CVE-2023-6322

A stack-based buffer overflow vulnerability exists in the message parsing functionality of the Roku Indoor Camera SE version 3.0.2.4679 and Wyze Cam v3 version 4.36.11.5859. A specially crafted message can lead to stack-based buffer overflow. An attacker can make authenticated requests to trigger this vulnerability.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:wyze:cam_v3_firmware:4.36.11.5859:*:*:*:*:*:*:*
cpe:2.3:h:wyze:cam_v3:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:roku:indoor_camera_se_firmware:3.0.2.4679:*:*:*:*:*:*:*
cpe:2.3:h:roku:indoor_camera_se:-:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:a:throughtek:kalay_platform:-:*:*:*:*:*:*:*

History

11 Feb 2025, 21:32

Type Values Removed Values Added
CPE cpe:2.3:h:wyze:cam_v3:-:*:*:*:*:*:*:*
cpe:2.3:o:roku:indoor_camera_se_firmware:3.0.2.4679:*:*:*:*:*:*:*
cpe:2.3:o:wyze:cam_v3_firmware:4.36.11.5859:*:*:*:*:*:*:*
cpe:2.3:h:roku:indoor_camera_se:-:*:*:*:*:*:*:*
cpe:2.3:a:throughtek:kalay_platform:-:*:*:*:*:*:*:*
CWE CWE-787
References () https://bitdefender.com/blog/labs/notes-on-throughtek-kalay-vulnerabilities-and-their-impact/ - () https://bitdefender.com/blog/labs/notes-on-throughtek-kalay-vulnerabilities-and-their-impact/ - Exploit, Third Party Advisory
First Time Throughtek
Wyze cam V3 Firmware
Roku
Throughtek kalay Platform
Wyze cam V3
Wyze
Roku indoor Camera Se
Roku indoor Camera Se Firmware

21 Nov 2024, 08:43

Type Values Removed Values Added
References () https://bitdefender.com/blog/labs/notes-on-throughtek-kalay-vulnerabilities-and-their-impact/ - () https://bitdefender.com/blog/labs/notes-on-throughtek-kalay-vulnerabilities-and-their-impact/ -

15 May 2024, 16:40

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-15 13:15

Updated : 2025-02-11 21:32


NVD link : CVE-2023-6322

Mitre link : CVE-2023-6322

CVE.ORG link : CVE-2023-6322


JSON object : View

Products Affected

roku

  • indoor_camera_se
  • indoor_camera_se_firmware

wyze

  • cam_v3
  • cam_v3_firmware

throughtek

  • kalay_platform
CWE
CWE-121

Stack-based Buffer Overflow

CWE-787

Out-of-bounds Write