Buffer Overflow Vulnerability in Samsung SmartThings Hub Video-Core
CVE-2018-3897

9.9CRITICAL

Key Information:

Vendor

Samsung

Vendor
CVE Published:
10 September 2018

What is CVE-2018-3897?

A buffer overflow vulnerability exists in the HTTP server of the Samsung SmartThings Hub's video-core component. This issue arises from improper handling of user-controlled JSON payloads, specifically within the /cameras/XXXX/clips handler. The process wrongly extracts data from incoming requests, enabling an attacker to manipulate the 'callbackUrl' field. This can lead to an overflow in the stack memory due to the strncpy function exceeding its intended buffer size of 52 bytes, potentially allowing remote code execution and system compromise.

Affected Version(s)

SmartThings Hub STH-ETH-250 Firmware version 0.20.17

References

CVSS V3.1

Score:
9.9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.