Security Advisory
CVE-2018-3892
8.1
HIGH
Vulnerability Description
An exploitable firmware downgrade vulnerability exists in the time syncing functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafted packet can cause a buffer overflow, resulting in code execution. An attacker can intercept and alter network traffic to trigger this vulnerability.
Published Date
November 2, 2018
Official Source
NIST NVD Advisory