CVE-2020-37049: Frigate 3.36.0.9 - 'Command Line' Local Buffer Overflow
Frigate 3.36.0.9 contains a local buffer overflow vulnerability in the Command Line input field that allows attackers to execute arbitrary code. Attackers can craft a malicious payload to overflow the buffer, bypass DEP, and execute commands like launching calc.exe through a specially crafted input sequence.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-37049?
CVE-2020-37049 is considered to have a high severity due to the potential for remote code execution.
How can I mitigate the risks associated with CVE-2020-37049?
To mitigate CVE-2020-37049, users should upgrade to the latest version of Frigate that addresses this vulnerability.
What attack vectors are associated with CVE-2020-37049?
CVE-2020-37049 allows attackers to exploit a local buffer overflow through the Command Line input field.
What systems are affected by CVE-2020-37049?
CVE-2020-37049 specifically affects Frigate version 3.36.0.9.
Can CVE-2020-37049 lead to arbitrary code execution?
Yes, CVE-2020-37049 can allow an attacker to execute arbitrary code on the affected system.