CVE-2026-89020 | MikroTik RouterOS up to 7.23.3/7.24.1 TFTP RRQ Builder TFTP RRQ builder function stack-based overflow

SecurityVulns

A vulnerability marked as critical has been reported in MikroTik RouterOS up to 7.23.3/7.24.1. The affected element is the function TFTP RRQ builder function of the component TFTP RRQ Builder. The manipulation leads to stack-based buffer overflow.

This vulnerability is listed as CVE-2026-89020. The attack may be initiated remotely. There is no available exploit.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More