OpenWRT Addresses Critical Security Flaw Amidst Rising Cybersecurity Concerns
OpenWRT, a widely used open-source project for embedded devices, has released a major update to address a critical security flaw in its DHCP server. The flaw, identified in the odhcpd server, involves a stack-based buffer overflow vulnerability that could be exploited by attackers to execute arbitrary code. This vulnerability is particularly concerning for devices using the MIPS processor architecture, which lacks modern security protections against such attacks. The update also includes fixes for other security issues in the LUCI web configuration interface and the Linux kernel. The discovery and reporting of these vulnerabilities were facilitated by Hacker House, which utilized AI tools and manual testing to identify the issues.