CVE-2026-102296
Received Received - Intake

RemoteCameraHttp Buffer Overflow in ZoneMinder

Vulnerability report for CVE-2026-102296, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-28

Last updated on: 2026-09-28

Assigner: VulnCheck

Description

ZoneMinder before 1.38.4 contains static buffer overflow vulnerabilities in RemoteCameraHttp::GetResponse() that allow malicious HTTP cameras or intercepting attackers to overflow fixed-size buffers by sending oversized response headers. Attackers can send crafted HTTP responses with oversized status messages, Connection headers, Content-Type values, or multipart boundaries to corrupt parser state and crash the capture process or corrupt memory.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-28
Last Modified
2026-09-28
Generated
2026-09-29
AI Q&A
2026-09-29
EPSS Evaluated
N/A
NVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
zoneminder zoneminder to 1.38.4 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-120 The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

ZoneMinder before version 1.38.4 has a static buffer overflow vulnerability in the RemoteCameraHttp::GetResponse() function. This flaw allows attackers to send oversized HTTP response headers, such as status messages, Connection headers, Content-Type values, or multipart boundaries, which can overflow fixed-size buffers. This can corrupt parser state, crash the capture process, or corrupt memory.

Detection Guidance

Detecting this vulnerability requires monitoring ZoneMinder instances for crashes or memory corruption when processing HTTP responses from cameras. Check logs for segmentation faults or buffer overflow errors in ZoneMinder processes. Use network monitoring tools like tcpdump or Wireshark to inspect HTTP responses from cameras for oversized headers or malformed status messages.

Impact Analysis

This vulnerability can allow malicious HTTP cameras or attackers intercepting traffic to crash the ZoneMinder capture process or corrupt memory. This may lead to denial of service, unexpected behavior, or potential remote code execution, depending on the system configuration and environment.

Compliance Impact

This vulnerability could potentially impact compliance with GDPR and HIPAA by enabling unauthorized memory corruption or crashes in ZoneMinder, which may lead to data integrity issues or denial of service. Exploitation could allow attackers to disrupt monitoring systems handling sensitive data, violating availability requirements under GDPR and HIPAA.

Mitigation Strategies

Upgrade ZoneMinder to version 1.38.4 or later immediately. Disable or remove any untrusted or vulnerable HTTP cameras from the network. Implement network segmentation to isolate ZoneMinder from untrusted sources. Monitor ZoneMinder logs for signs of exploitation attempts.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-102296. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart