CVE-2026-16095

A flaw has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. Affected by this issue is the function setup_conntrack of the file /sbin/rc. Executing a manipulation of the argument ct_tcp_timeout can lead to out-of-bounds write. The attack may be performed from remote. This project is superseded by FreshTomato.
Configurations

No configuration.

History

No history.

Information

Published : 2026-07-18 11:16

Updated : 2026-07-20 15:16


NVD link : CVE-2026-16095

Mitre link : CVE-2026-16095

CVE.ORG link : CVE-2026-16095


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-787

Out-of-bounds Write