CVE-2018-3928: Infoleak
An exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafted set of UDP packets can cause a settings change, resulting in denial of service. An attacker can send a set of packets to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-3928?
CVE-2018-3928 is considered a high severity code execution vulnerability that can lead to denial of service.
How do I fix CVE-2018-3928?
To mitigate CVE-2018-3928, it's recommended to update the Yi Home Camera to the latest firmware version provided by the manufacturer.
What type of attack does CVE-2018-3928 involve?
CVE-2018-3928 involves an attack using specially crafted UDP packets that exploit the firmware update functionality.
Which device is affected by CVE-2018-3928?
CVE-2018-3928 affects the Yi Home Camera with firmware version 1.8.7.0D.
What impact can CVE-2018-3928 have on my device?
Exploitation of CVE-2018-3928 can change the device settings and potentially lead to a denial of service.