CVE-2018-3863: Buffer Overflow
On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability. A strcpy overflows the destination buffer, which has a size of 40 bytes. An attacker can send an arbitrarily long "user" value in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-3863?
CVE-2018-3863 is classified as a critical severity vulnerability due to its potential to cause buffer overflow and allow remote code execution.
How do I fix CVE-2018-3863?
To fix CVE-2018-3863, update the Samsung SmartThings Hub STH-ETH-250 firmware to version 0.20.18 or later.
What type of vulnerability is CVE-2018-3863?
CVE-2018-3863 is a buffer overflow vulnerability caused by improper handling of a user-controlled JSON payload.
Who is affected by CVE-2018-3863?
CVE-2018-3863 affects Samsung SmartThings Hub devices running firmware version 0.20.17.
What can an attacker do with CVE-2018-3863?
An attacker exploiting CVE-2018-3863 can execute arbitrary code on the affected SmartThings Hub by sending a specially crafted HTTP request.