Executive brief
GeoVision GV-LPC2211 is a network camera device used in surveillance systems. An attacker can send specially crafted discovery requests to crash the camera's discovery service without requiring authentication, causing the device to become unavailable to legitimate monitoring systems.
Technical details
A stack buffer overflow vulnerability exists in the ONVIF WS-Discovery Probe request handler in GeoVision GV-LPC2211 V1.13. The vulnerability results from insufficient bounds checking on the number of Scopes tokens parsed from unauthenticated discovery requests. An attacker on the network can send a Probe request with an excessive number of Scopes tokens to corrupt stack control structures, leading to denial of service by crashing the discovery process. No authentication is required, and the attack is triggered through network-accessible ONVIF WS-Discovery mechanisms. The vulnerability allows remote crash of the device's discovery functionality.
Affected products
- GeoVision GV-LPC2211 V1.13
Timeline
- 2026-09-10: disclosed