CVE-2020-27539
Summary
| CVE | CVE-2020-27539 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-01-26 18:15:00 UTC |
| Updated | 2021-02-02 18:56:00 UTC |
| Description | Heap overflow with full parsing of HTTP respose in Rostelecom CS-C2SHW 5.0.082.1. AgentUpdater service has a self-written HTTP parser and builder. HTTP parser has a heap buffer overflow (OOB write). In default configuration camera parses responses only from HTTPS URLs from config file, so vulnerable code is unreachable and one more bug required to reach it. |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Company | Cs-c2shw | - | All | All | All |
| Hardware | Company | Cs-c2shw | - | All | All | All |
| Operating System | Company | Cs-c2shw Firmware | 5.0.082.1 | All | All | All |
| Operating System | Company | Cs-c2shw Firmware | 5.0.082.1 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Groundhog Day in IoT Valley, or 5 CVEs in 1 Camera | by Andrey Lovyannikov | Medium | MISC | dil4rd.medium.com | Exploit, Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.