Buffer Overflow Vulnerability in Samsung SmartThings Hub HTTP Server
CVE-2018-3875

9.9CRITICAL

Key Information:

Vendor
Samsung
Vendor
CVE Published:
10 September 2018

Summary

A buffer overflow vulnerability was identified in the credentials handler of the video-core HTTP server on the Samsung SmartThings Hub. This issue arises when the video-core process improperly handles user-provided JSON payloads, leading to stack overflow conditions. Specifically, the strncpy function can overflow a destination buffer of 2,000 bytes when it processes an excessively long 'sessionToken'. Attackers can exploit this flaw to inject malicious data, potentially compromising the security of affected devices.

Affected Version(s)

SmartThings Hub STH-ETH-250 Firmware version 0.20.17

References

CVSS V3.1

Score:
9.9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.