Integer Overflow in Genivia gSOAP Affects Axis Cameras and Other Devices
CVE-2017-9765
What is CVE-2017-9765?
A critical integer overflow vulnerability exists in the soap_get function of Genivia gSOAP versions 2.7.x and 2.8.x prior to 2.8.48. This flaw can be exploited by remote attackers to execute arbitrary code or lead to a denial of service on devices utilizing this library, such as Axis cameras. The vulnerability triggers a stack-based buffer overflow when processing large XML documents, potentially resulting in application crashes. Note that many server configurations may mitigate the risk by blocking excessively large documents.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
EPSS Score
25% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
