PT-2022-25538 · Unknown · Mipc Camera Firmware
Joshua Wang
·
Published
2022-09-26
·
Updated
2022-09-28
·
CVE-2022-40784
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
mIPC camera firmware version 5.3.1.2003161406
Description
The issue is related to an unlimited strcpy on user input when setting a locale file, which leads to a stack buffer overflow. This occurs in the mIPC camera firmware.
Recommendations
For mIPC camera firmware version 5.3.1.2003161406, consider restricting user input when setting locale files to prevent potential stack buffer overflows until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mipc Camera Firmware