CVE-2025-49492

Out-of-bounds write in ASR180x in lte-telephony, May cause a buffer underrun.  This vulnerability is associated with program files apps/atcmd_server/src/dev_api.C. This issue affects Falcon_Linux、Kestrel、Lapwing_Linux: before v1536.
References
Link Resource
https://www.asrmicro.com/en/goods/psirt?cid=40 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:asrmicro:falcon_linux:*:*:*:*:*:*:*:*
cpe:2.3:o:asrmicro:kestrel:*:*:*:*:*:*:*:*
cpe:2.3:o:asrmicro:lapwing_linux:*:*:*:*:*:*:*:*
OR cpe:2.3:h:asrmicro:asr1803:-:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1806:-:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1901:-:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1903:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-07-01 11:15

Updated : 2025-12-22 17:41


NVD link : CVE-2025-49492

Mitre link : CVE-2025-49492

CVE.ORG link : CVE-2025-49492


JSON object : View

Products Affected

asrmicro

  • asr1901
  • asr1806
  • kestrel
  • asr1903
  • asr1803
  • lapwing_linux
  • falcon_linux
CWE
CWE-787

Out-of-bounds Write