Security Advisory

CVE-2019-5036

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-08-20 21:08:40
Last updated 2024-08-04 19:40:49
Assigner talos
State PUBLISHED

Description

An exploitable denial-of-service vulnerability exists in the Weave error reporting functionality of the Nest Cam IQ Indoor, version 4620002. A specially crafted weave packets can cause an arbitrary Weave Exchange Session to close, resulting in a denial of service. An attacker can send a specially crafted packet to trigger this vulnerability.