Realtek IoT SDK Buffer Overflow Vulnerability Disclosed with PoC

evilsocket · x · 2026-08-13

Security researcher notkmhn disclosed a buffer overflow vulnerability in Realtek AmebaZ, AmebaZ2, and Z2Plus MCU SDKs, affecting RTL87xxxx SoCs. The flaw is triggered by oversized SSID IEs in 802.11 Beacon frames. A PoC is available on GitHub. The bug was fixed in the upstream Linux driver in 2020 but not in the SDK, and Realtek has not responded.

Original post →

More from Safety

Safety channel →