Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap overflow with full parsing of HTTP respose in Rostelecom CS-C2SHW 5.0.082.1. AgentUpdater service has a self-written HTTP parser and builder. HTTP parser has a heap buffer overflow (OOB write). In default configuration camera parses responses only from HTTPS URLs from config file, so vulnerable code is unreachable and one more bug required to reach it.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Rostelecom CS-CSHW 缓冲区错误漏洞
Vulnerability Description
Rostelecom CS-C2SHW 5.0.082.1存在安全漏洞,该漏洞源于程序全面解析HTTP响应的堆溢出。
CVSS Information
N/A
Vulnerability Type
N/A