Description
In TP-Link TL-XDR3230 < 1.0.12, TL-XDR1850 < 1.0.9, TL-XDR1860 < 1.0.14, TL-XDR3250 < 1.0.2, TL-XDR6060 Turbo < 1.1.8, TL-XDR5430 < 1.0.11, and possibly others, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device and its upstream ISP's router. This occurs when a link prefix route points to a point-to-point link, a destination IPv6 address belongs to the prefix and is not a local IPv6 address, and a router advertisement is received with at least one global unique IPv6 prefix for which the on-link flag is set.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-26475 | In TP-Link TL-XDR3230 < 1.0.12, TL-XDR1850 < 1.0.9, TL-XDR1860 < 1.0.14, TL-XDR3250 < 1.0.2, TL-XDR6060 Turbo < 1.1.8, TL-XDR5430 < 1.0.11, and possibly others, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device and its upstream ISP's router. This occurs when a link prefix route points to a point-to-point link, a destination IPv6 address belongs to the prefix and is not a local IPv6 address, and a router advertisement is received with at least one global unique IPv6 prefix for which the on-link flag is set. |
References
History
No history.
Subscriptions
Tp-link
Subscribe
Tl-xdr1850
Subscribe
Tl-xdr1850 Firmware
Subscribe
Tl-xdr1860
Subscribe
Tl-xdr1860 Firmware
Subscribe
Tl-xdr3230
Subscribe
Tl-xdr3230 Firmware
Subscribe
Tl-xdr3250
Subscribe
Tl-xdr3250 Firmware
Subscribe
Tl-xdr5430
Subscribe
Tl-xdr5430 Firmware
Subscribe
Tl-xdr6060
Subscribe
Tl-xdr6060 Firmware
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T16:45:51.234Z
Reserved: 2021-01-11T00:00:00.000Z
Link: CVE-2021-3125
No data.
Status : Modified
Published: 2021-04-12T19:15:14.753
Modified: 2024-11-21T06:20:56.520
Link: CVE-2021-3125
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD