A Denial of Service condition in Motion-Project Motion 3.2 through 4.3.1 allows remote unauthenticated users to cause a webu.c segmentation fault and kill the main process via a crafted HTTP request.
References
Link | Resource |
---|---|
https://github.com/Motion-Project/motion/issues/1227#issuecomment-715927776 | Exploit Issue Tracking Third Party Advisory |
https://github.com/Motion-Project/motion/releases | Release Notes Third Party Advisory |
https://motion-project.github.io/index.html | Product |
https://security.gentoo.org/glsa/202208-18 | Third Party Advisory |
https://github.com/Motion-Project/motion/issues/1227#issuecomment-715927776 | Exploit Issue Tracking Third Party Advisory |
https://github.com/Motion-Project/motion/releases | Release Notes Third Party Advisory |
https://motion-project.github.io/index.html | Product |
https://security.gentoo.org/glsa/202208-18 | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2020-10-26 18:15
Updated : 2024-11-21 05:20
NVD link : CVE-2020-26566
Mitre link : CVE-2020-26566
CVE.ORG link : CVE-2020-26566
JSON object : View
Products Affected
motion_project
- motion
CWE
CWE-125
Out-of-bounds Read