PT-2018-16258 · Samsung · Samsung Smartthings Hub

CVE-2018-3864

·

Published

2018-09-20

·

Updated

2023-05-16

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17
Description A buffer overflow issue exists in the Samsung WifiScan handler of the video-core's HTTP server. The strcpy function overflows a destination buffer with a size of 40 bytes. An attacker can exploit this by sending an arbitrarily long password value.
Recommendations For Firmware version 0.20.17, as a temporary workaround, consider restricting access to the WifiScan handler until a patch is available. Avoid using arbitrarily long password values in the affected HTTP server endpoint.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-3864

Affected Products

Samsung Smartthings Hub