CVE-2020-3931: GeoVision Door Access Control Device - Buffer overflow vulnerability
Published Jul 8, 2020
·Updated
Buffer overflow exists in Geovision Door Access Control device family, an unauthenticated remote attacker can execute arbitrary command.
Affected Software
12 affected components
GeoVision Gv-as210 Firmware<2.21
GeoVision Gv-as210
GeoVision Gv-as410 Firmware<2.21
GeoVision Gv-as410
GeoVision Gv-as810 Firmware<2.21
GeoVision Gv-as810
GeoVision Gv-gf1921 Firmware<1.10
GeoVision Gv-gf1921
GeoVision Gv-as1010 Firmware<1.32
GeoVision Gv-as1010
GeoVision Gv-gf1922 Firmware<1.10
GeoVision Gv-gf1922
Remediation
Information
Update to version 2.22 in GV-AS210,
Update to version 2.22 in GV-AS410,
Update to version 2.22 in GV-AS810,
Update to version 1.22 in GV-GF192x,
Update to version 1.33 in GV-AS1010
Event History
Jul 8, 2020
CVE Published
via MITRE·10:05 AM
Data Sourced
via MITRE·10:05 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-3931?
CVE-2020-3931 is classified as a critical vulnerability due to its potential for remote command execution.
2
How do I fix CVE-2020-3931?
To mitigate CVE-2020-3931, upgrade the affected Geovision Door Access Control firmware to the latest version beyond 2.21.
3
Who is affected by CVE-2020-3931?
CVE-2020-3931 affects various models in the Geovision Door Access Control device family running specific firmware versions.
4
What type of attack is possible with CVE-2020-3931?
An unauthenticated remote attacker can exploit CVE-2020-3931 to execute arbitrary commands on the vulnerable devices.
5
Is CVE-2020-3931 being actively exploited?
While there are no known active exploitation cases reported, the critical nature of CVE-2020-3931 makes it a significant risk.