CVE-2019-11878
An attacker on the same local network as the camera can craft a message with a size field larger than 0x80000000 and send it to the camera, related to an integer overflow or use of a negative number.
Does this matter?
Lower severity and a low EPSS score (0.92%). Track it; it rarely justifies an emergency change on its own.
Description
An issue was discovered on XiongMai Besder IP20H1 V4.02.R12.00035520.12012.047500.00200 cameras. An attacker on the same local network as the camera can craft a message with a size field larger than 0x80000000 and send it to the camera, related to an integer overflow or use of a negative number. This then crashes the camera for about 120 seconds.
- CVSS 3.0
- 6.5 MEDIUMCVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.92% probability · 58th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-190
- Affected
- xiongmaitech/besder ip20h1 firmware
- Source
- cve@mitre.org
References
- http://blog.0x42424242.in/2019/04/besder-investigative-journey-part-1_24.htmlExploit, Third Party Advisory
- https://www.youtube.com/watch?v=SnyPJtDDMFQExploit, Third Party Advisory
- http://blog.0x42424242.in/2019/04/besder-investigative-journey-part-1_24.htmlExploit, Third Party Advisory
- https://www.youtube.com/watch?v=SnyPJtDDMFQExploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.