A Denial of Service condition in Motion-Project Motion 3.2 through 4.3.1 allows remote unauthenticated users to cause a webu.c segmentation fault and kill the main process via a crafted HTTP request.
References
Link | Resource |
---|---|
https://github.com/Motion-Project/motion/releases | Release Notes Third Party Advisory |
https://motion-project.github.io/index.html | Product |
https://github.com/Motion-Project/motion/issues/1227#issuecomment-715927776 | Exploit Issue Tracking Third Party Advisory |
https://security.gentoo.org/glsa/202208-18 | Third Party Advisory |
Configurations
Information
Published : 2020-10-26 11:15
Updated : 2023-01-31 13:44
NVD link : CVE-2020-26566
Mitre link : CVE-2020-26566
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
motion_project
- motion