PT-2025-35607 · Realtek · Realtek Rtl81Xx Sdk Wi-Fi Driver

Dungnm

·

Published

2025-09-02

·

Updated

2025-09-17

·

CVE-2025-8299

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Realtek rtl81xx SDK Wi-Fi Driver (affected versions not specified)
Description This issue allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute low-privileged code on the target system to exploit this flaw. The vulnerability exists within the MgntActSet TEREDO SET RS PACKET function due to insufficient validation of user-supplied data length before copying it into a fixed-length heap-based buffer, potentially leading to arbitrary code execution in the context of SYSTEM.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-8299
ZDI-25-882

Affected Products

Realtek Rtl81Xx Sdk Wi-Fi Driver