Buffer Overflow Vulnerability in Samsung SmartThings Hub
CVE-2018-3864
9.9CRITICAL
What is CVE-2018-3864?
A buffer overflow vulnerability has been identified in the Samsung SmartThings Hub's WifiScan handler, which could be exploited via the HTTP server. This issue allows attackers to send excessively long input to a 'password' field, leading to a potential overflow of the destination buffer intended for storage. It is crucial for users to be aware of this flaw to prevent unauthorized access and ensure the security of their smart home devices.
Affected Version(s)
SmartThings Hub STH-ETH-250 Firmware version 0.20.17