HIGH · 7.5

CVE-2018-10659

There was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which allows remote attackers to cause a denial of service (crash) by sending a crafted command which will result i...

Vulnerability Description

There was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which allows remote attackers to cause a denial of service (crash) by sending a crafted command which will result in a code path that calls the UND undefined ARM instruction.

CVSS Score

7.5

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
AxisA1001 Firmware< 1.65.1
AxisA1001-
AxisA8004-V Firmware< 1.65.2
AxisA8004-V-
AxisA8105-E Firmware< 1.65.2
AxisA8105-E-
AxisA9161 Firmware< 1.65.0
AxisA9161-
AxisA9188 Firmware< 1.65.0
AxisA9188-
AxisA9188-V Firmware< 1.65.0
AxisA9188-V-
AxisC1004-E Firmware< 1.81.040.1
AxisC1004-E-
AxisC2005 Firmware< 1.81.040.1
AxisC2005-
AxisC3003-E Firmware< 1.81.040.1
AxisC3003-E-
AxisC8033 Firmware< 1.81.040.1
AxisC8033-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2018-10659?

CVE-2018-10659 is a vulnerability with a CVSS score of 7.5 (HIGH). There was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which allows remote attackers to cause a denial of service (crash) by sending a crafted command which will result i...

How severe is CVE-2018-10659?

CVE-2018-10659 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2018-10659?

Check the references section above for vendor advisories and patch information. Affected products include: Axis A1001 Firmware, Axis A1001, Axis A8004-V Firmware, Axis A8004-V, Axis A8105-E Firmware.