Security Advisory

CVE-2018-3928

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-11-01 15:00:00
Last updated 2024-09-16 20:58:52
Assigner talos
CVSS score 7.5
State PUBLISHED

Description

An exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafted set of UDP packets can cause a settings change, resulting in denial of service. An attacker can send a set of packets to trigger this vulnerability.