A null pointer dereference vulnerability exists in the RTSP service of the MERCURY MIPC252W 1.0.5 Build 230306 Rel.79931n. During the processing of a SETUP request for the path rtsp://<IP>:554/stream1/track2, the device fails to properly validate the Transport header field. When this header is improperly constructed, the RTSP service can dereference a NULL pointer during request parsing. Successful exploitation causes the device to crash and automatically reboot.
Metrics
Affected Vendors & Products
References
History
Tue, 05 May 2026 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mercurycom
Mercurycom mipc252w Mercurycom mipc252w Firmware |
|
| CPEs | cpe:2.3:h:mercurycom:mipc252w:-:*:*:*:*:*:*:* cpe:2.3:o:mercurycom:mipc252w_firmware:1.0.5:build_230306:*:*:*:*:*:* |
|
| Vendors & Products |
Mercurycom
Mercurycom mipc252w Mercurycom mipc252w Firmware |
Tue, 28 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Null Pointer Dereference in RTSP Service Causing Device Reboot |
Tue, 28 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 28 Apr 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Null Pointer Dereference in RTSP Service Causing Device Reboot | |
| Weaknesses | CWE-476 |
Tue, 28 Apr 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mercury
Mercury mipc252w |
|
| Vendors & Products |
Mercury
Mercury mipc252w |
Mon, 27 Apr 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A null pointer dereference vulnerability exists in the RTSP service of the MERCURY MIPC252W 1.0.5 Build 230306 Rel.79931n. During the processing of a SETUP request for the path rtsp://<IP>:554/stream1/track2, the device fails to properly validate the Transport header field. When this header is improperly constructed, the RTSP service can dereference a NULL pointer during request parsing. Successful exploitation causes the device to crash and automatically reboot. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-04-27T00:00:00.000Z
Updated: 2026-04-28T15:05:27.912Z
Reserved: 2026-03-09T00:00:00.000Z
Link: CVE-2026-31256
Updated: 2026-04-28T15:05:23.769Z
Status : Analyzed
Published: 2026-04-27T19:16:47.230
Modified: 2026-05-05T01:30:08.923
Link: CVE-2026-31256
No data.