Router memory safety
An unauthenticated LAN DHCP option can overflow fixed stack buffers in the D-Link DIR-822A daemon.
The public evidence establishes stack corruption, not reliable control-flow hijacking or arbitrary code execution on shipped A_101 hardware.
Sources
ResearchD-Link confirme deux failles critiques sans correctif dans le routeur DIR-822A, avec des exploits publics — ETTAYEBResearchET EXPLOIT D-Link udhcpd option 125, Suboption 1-3 Buffer Overflow Attempt (CVE-2026-86296)VendorD-Link Technical SupportVendorD-Link warns of max severity zero-day bug in DIR-822A routers