Stack-Based Buffer Overflow Vulnerability in GeoVision Products
CVE-2026-57881
9.8CRITICAL
What is CVE-2026-57881?
An unauthenticated stack-based buffer overflow vulnerability is identified in GeoVision's vlsvr, impacting GV-LPC2011 and GV-LPC2211 versions prior to V1.12. This flaw arises from inadequate length validation associated with remote login data. A remote attacker could exploit this weakness by transmitting specially crafted login information with excessively long input, leading to potential memory corruption, denial of service conditions, or arbitrary code execution in affected systems.
Affected Version(s)
GV-LPCLPC2011/2211 Linux 1.12
GV-LPCLPC2011/2211 Linux 1.13
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Jincheng Wang (@winmt), Professor Le Yu of Nanjing University of Posts and Telecommunications, and Professor Xiapu Luo of The Hong Kong Polytechnic University has reported:
