Back to overview

CVE-2018-3895

CRITICAL
9.9
CVSS 3.0
Description
An exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 Firmware version 0.20.17. The strncpy call overflows the destination buffer, which has a size of 52 bytes. An attacker can send an arbitrarily long 'endTime' value in order to exploit this vulnerability. An attacker can send an HTTP request to trigger this vulnerability.

Metadata

CVE ID
CVE-2018-3895
State
PUBLISHED
Assigner
talos
Reserved
2018-01-02 00:00 UTC
Published
2018-08-28 19:00 UTC
Last updated
2024-09-17 03:43 UTC
Vendor / Product
Samsung / Samsung
Sources
cve.org  ·  NVD

Severity & Metrics

9.9 CRITICAL CVSS 3.0
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Affected products (1)
VendorProductPlatformVersions
Samsung Samsung Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17
Weakness (CWE)
CWESourceDescription
cna Buffer Overflow
CVSS scores (1)
ScoreSeverityVersionSourceVector
9.9 CRITICAL 3.0 cna CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Back to overview