PatchSiren

radvd-project CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH radvd-project CVE published 2026-06-19

CVE-2026-48715

CVE-2026-48715 is a stack buffer overflow vulnerability in the radvdump utility of radvd, a router advertisement daemon for IPv6. The vulnerability occurs when processing a crafted ICMPv6 Router Advertisement, allowing an attacker to overflow a 16-byte struct in6_addr on the stack by up to 2016 bytes. The main radvd daemon is not affected. This issue was patched in version 2.21. Defenders should assess ex [truncated]