Remote Stack Format String in ‘nsd’ binary from multiple OEM
A remote stack format string vulnerability exists in the 'nsd' binary from multiple OEMs. An attacker can send a specially crafted HTTP request containing format string specifiers to the vulnerable server, which can be used to leak memory contents from the stack. The researcher 'bashis' discovered the vulnerability in December 2017 and released a proof-of-concept (PoC) exploit on GitHub. The affected OEMs include Huatu, I-View, IP Camera Web Service, Stanley Security, 3D Eyes CCTV Platform, Protech Srl, LS vision, GWSECU, 12 Legion Solution, HDVuk IP Camera, Intervid Security, Suzuki Tech, Wellsite IP Camera, iBrido, Protec IP Camera, Maxtron IP Camera, Ascendent, GTvs IP Camera, Squilla, Bikal IP Camera, MW Power, Alfa Vision, KMA Security, Tough Dog Security, Kpro HQ, Lanetwork, AFM Vision, ZetaDo, Jobsight Inc., Datalab IP Technologies, 4Tvision, Proline UK, Tanz, Aisonic, HD-IP, PreSec Security Solution, and EagleVisi.