CVE-2025-49492

Out-of-bounds write in ASR180x in lte-telephony, May cause a buffer underrun.  This vulnerability is associated with program files apps/atcmd_server/src/dev_api.C. This issue affects Falcon_Linux、Kestrel、Lapwing_Linux: before v1536.
References
Link Resource
https://www.asrmicro.com/en/goods/psirt?cid=40 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:asrmicro:falcon_linux:*:*:*:*:*:*:*:*
cpe:2.3:o:asrmicro:kestrel:*:*:*:*:*:*:*:*
cpe:2.3:o:asrmicro:lapwing_linux:*:*:*:*:*:*:*:*
OR cpe:2.3:h:asrmicro:asr1803:-:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1806:-:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1901:-:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1903:-:*:*:*:*:*:*:*

History

22 Dec 2025, 17:41

Type Values Removed Values Added
CPE cpe:2.3:h:asrmicro:asr1901:-:*:*:*:*:*:*:*
cpe:2.3:o:asrmicro:falcon_linux:*:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1803:-:*:*:*:*:*:*:*
cpe:2.3:o:asrmicro:kestrel:*:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1806:-:*:*:*:*:*:*:*
cpe:2.3:o:asrmicro:lapwing_linux:*:*:*:*:*:*:*:*
cpe:2.3:h:asrmicro:asr1903:-:*:*:*:*:*:*:*
First Time Asrmicro kestrel
Asrmicro asr1803
Asrmicro
Asrmicro asr1901
Asrmicro lapwing Linux
Asrmicro falcon Linux
Asrmicro asr1806
Asrmicro asr1903
References () https://www.asrmicro.com/en/goods/psirt?cid=40 - () https://www.asrmicro.com/en/goods/psirt?cid=40 - Vendor Advisory

03 Jul 2025, 15:14

Type Values Removed Values Added
Summary
  • (es) Escritura fuera de los límites en ASR180x en lte-telephony. Puede causar un subdesbordamiento del búfer. Esta vulnerabilidad está asociada con los archivos de programa apps/atcmd_server/src/dev_api.C. Este problema afecta a Falcon_Linux, Kestrel y Lapwing_Linux anteriores a la v1536.

01 Jul 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-01 11:15

Updated : 2025-12-22 17:41


NVD link : CVE-2025-49492

Mitre link : CVE-2025-49492

CVE.ORG link : CVE-2025-49492


JSON object : View

Products Affected

asrmicro

  • falcon_linux
  • lapwing_linux
  • asr1901
  • asr1806
  • asr1803
  • kestrel
  • asr1903
CWE
CWE-787

Out-of-bounds Write