Junglewise Threat Intelligence

CVE-2026-57879: GeoVision GV-LPC series stack-based buffer overflow in ssvr

CVE-2026-57879 · Severity: critical · CVSS 9.8 · Published 2026-06-26

Technologies: Geovision Gv-Lpc2211, Geovision Gv-Lpc2011. Vendors: Geovision.

Executive brief

A critical security vulnerability exists in GeoVision license plate recognition cameras. An attacker can remotely exploit this flaw without a password to crash the device or potentially take full control of the camera. This could lead to a complete loss of video surveillance, unauthorized access to sensitive visual data, or the device being used as a foothold to attack other parts of the corporate network.

Technical details

A stack-based buffer overflow (CWE-121) exists in the 'ssvr' service of GeoVision GV-LPC2011 and GV-LPC2211 devices running firmware V1.12 and earlier. The vulnerability is triggered by insufficient bounds checking when the service processes custom authentication data within Real Time Streaming Protocol (RTSP) requests. A remote, unauthenticated attacker can exploit this by sending a specially crafted RTSP request to the device. Successful exploitation can lead to memory corruption, denial of service (DoS), or arbitrary code execution with the privileges of the ssvr process. GeoVision has released firmware version 1.13 to address this issue.

Affected products

  • GeoVision GV-LPC2011 V1.12 and earlier
  • GeoVision GV-LPC2211 V1.12 and earlier

Timeline

  • 2026-06-26: disclosed
  • 2026-06-26: advisory

References

Related threats