CVE-2024-11131

A vulnerability regarding out-of-bounds read is found in the video interface. This allows remote attackers to execute arbitrary code via unspecified vectors. The following models with Synology Camera Firmware versions before 1.2.0-0525 may be affected: BC500, CC400W and TC500.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:synology:bc500_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:synology:bc500:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:synology:cc400w_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:synology:cc400w:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:synology:tc500_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:synology:tc500:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-03-19 03:15

Updated : 2026-01-16 15:40


NVD link : CVE-2024-11131

Mitre link : CVE-2024-11131

CVE.ORG link : CVE-2024-11131


JSON object : View

Products Affected

synology

  • tc500
  • bc500_firmware
  • cc400w_firmware
  • bc500
  • tc500_firmware
  • cc400w
CWE
CWE-125

Out-of-bounds Read