CVE-2019-25339
7.5GHIA · CamIP
GHIA CamIP 1.2 for iOS is vulnerable to a stack-based buffer overflow in the password input field, allowing an attacker to trigger an application crash via a crafted input string.
Executive summary
A stack-based buffer overflow in GHIA CamIP 1.2 for iOS allows local attackers to cause a denial of service by crashing the application.
Vulnerability
The application fails to properly sanitize input in the password field, where a 33-character buffer of repeated characters causes a stack-based buffer overflow. This vulnerability can be triggered by any local user interacting with the application interface.
Business impact
Successful exploitation results in a denial of service, rendering the application unusable for the affected user. While the CVSS score of 7.5 indicates a high severity due to the impact on availability, the practical risk is limited to local disruption of the camera monitoring functionality. This could lead to temporary loss of visibility or operational oversight for users relying on the application for security monitoring.
Remediation
Immediate Action: As no official patch is currently available, users should restrict physical or local access to devices running the affected version of the application.
Proactive Monitoring: Security teams should monitor for unexpected application closures or instability in the GHIA CamIP software on managed mobile devices.
Compensating Controls: Implement mobile device management policies to restrict the installation of unauthorized or vulnerable applications.
Exploitation status
Public Exploit Available: Yes, a proof-of-concept exploit is available via the Exploit Database (EDB-ID: 47721).
Analyst recommendation
Given the availability of a public proof-of-concept and the lack of a vendor-supplied patch, organizations should prioritize limiting the use of this application in critical monitoring environments. Users should remain vigilant for updates from the vendor and apply them immediately upon release to resolve this memory safety issue.
Sources
Originally found and disclosed by Ivan Marmolejo, per the CVE Program record.
- ExploitDB-47721 Exploit / PoC
- Official App Store Page for GHIA CamIP
- VulnCheck Advisory: GHIA CamIP 1.2 for iOS - 'Password' Denial of Service Third-party advisory