CVE-2022-40918

Buffer overflow in firmware lewei_cam binary version 2.0.10 in Force 1 Discovery Wifi U818A HD+ FPV Drone allows attacker to gain remote code execution as root user via a specially crafted UDP packet. Please update the Reference section to these links > http://thiscomputer.com/ > https://www.bostoncyber.org/ > https://medium.com/@meekworth/exploiting-the-lw9621-drone-camera-module-773f00081368
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:force1rc:discovery_wifi_u818a_hd\+_fpv_firmware:2.0.10:*:*:*:*:*:*:*
cpe:2.3:h:force1rc:discovery_wifi_u818a_hd\+_fpv:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:22

Type Values Removed Values Added
References () https://1af95112-6fd8-4c8f-8bd6-c47f8ef7b77a.filesusr.com/ugd/c1f861_51eb0d33d5764efc93e9d5f19c306950.pdf - Exploit, Third Party Advisory () https://1af95112-6fd8-4c8f-8bd6-c47f8ef7b77a.filesusr.com/ugd/c1f861_51eb0d33d5764efc93e9d5f19c306950.pdf - Exploit, Third Party Advisory
References () https://medium.com/%40meekworth/exploiting-the-lw9621-drone-camera-module-773f00081368 - () https://medium.com/%40meekworth/exploiting-the-lw9621-drone-camera-module-773f00081368 -

07 Nov 2023, 03:52

Type Values Removed Values Added
References
  • {'url': 'https://medium.com/@meekworth/exploiting-the-lw9621-drone-camera-module-773f00081368', 'name': 'https://medium.com/@meekworth/exploiting-the-lw9621-drone-camera-module-773f00081368', 'tags': ['Exploit', 'Third Party Advisory'], 'refsource': 'MISC'}
  • () https://medium.com/%40meekworth/exploiting-the-lw9621-drone-camera-module-773f00081368 -

Information

Published : 2022-12-06 00:15

Updated : 2025-04-24 15:15


NVD link : CVE-2022-40918

Mitre link : CVE-2022-40918

CVE.ORG link : CVE-2022-40918


JSON object : View

Products Affected

force1rc

  • discovery_wifi_u818a_hd\+_fpv
  • discovery_wifi_u818a_hd\+_fpv_firmware
CWE
CWE-787

Out-of-bounds Write