CVE-2018-3938: Buffer Overflow
An exploitable stack-based buffer overflow vulnerability exists in the 802dot1xclientcert.cgi functionality of Sony IPELA E Series Camera G5 firmware 1.87.00. A specially crafted POST can cause a stack-based buffer overflow, resulting in remote code execution. An attacker can send a malicious POST request to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-3938?
CVE-2018-3938 is a stack-based buffer overflow vulnerability in the 802dot1xclientcert.cgi functionality of Sony IPELA E Series Camera G5 firmware 1.87.00.
How does CVE-2018-3938 affect Sony cameras?
CVE-2018-3938 affects Sony IPELA E Series Camera G5 firmware version 1.87.00.
What is the severity of CVE-2018-3938?
CVE-2018-3938 has a severity rating of critical.
How can CVE-2018-3938 be exploited?
CVE-2018-3938 can be exploited by sending a specially crafted POST request, causing a stack-based buffer overflow and resulting in remote code execution.
Is there a fix for CVE-2018-3938?
Yes, to fix CVE-2018-3938, users should update their Sony IPELA E Series Camera G5 firmware to version 1.87.01 or later.