At least one of the exploits can indeed be remotely exploited by hosting a malicious entry in your DNS and causing a visitor to attempt to resolve it. Might be difficult to exploit however, as you'd need to have separate exploits for the various architecture/OS used by the different routers out there. So I'd say the higher risk would be if you were actively targeted.