Assigner | Bitdefender |
Reserved | 2023-11-27 |
Published | 2024-05-15 |
Updated | 2024-06-04 |
Description
A stack-based buffer overflow vulnerability exists in the message parsing functionality of the Roku Indoor Camera SE version 3.0.2.4679 and Wyze Cam v3 version 4.36.11.5859. A specially crafted message can lead to stack-based buffer overflow. An attacker can make authenticated requests to trigger this vulnerability.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Problem types
CWE-121 - Stack-based Buffer Overflow
Product status
Any version
Any version
Credits
Alexandru Lazar
Radu Basaraba
References
https://bitdefender.com/blog/labs/notes-on-throughtek-kalay-vulnerabilities-and-their-impact/