CNNVD-202512-1772 Information

CNNVD ID

CNNVD-202512-1772

CVE-2025-65296

  • CNNVD Published: 2025-12-10

Description (Chinese)

Aqara Camera Hub G3等都是美国Aqara公司的一个智能监控摄像机。 Aqara多款产品存在安全漏洞,该漏洞源于JSON处理中存在空指针取消引用,可能导致拒绝服务攻击。以下产品及版本受到影响:Aqara Hub M2 43.6_0027版本、Hub M3 4.3.6_0025版本和Camera Hub G3 4.1.9_0027版本。

Description (English)

Aqara Camera Hub G3 and others are smart surveillance cameras for Aqara in the United States. There is a safety gap in a number of Aqara products, which stems from the fact that there is an empty pointer in JSON ’ s handling that could lead to a denial of service attack. The following products and versions were affected: Aqara Hub M2 43.6 0027, Hub M3 4.3.6 0025 and Camera Hub G3 4.1.9 0027.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Aqara

Published

2025-12-10

Last Modified

2026-02-24

References

https://github.com/Chapoly1305/myCVEReports/blob/main/Aqara/JSON-NULL-Dereference.md https://access.redhat.com/security/cve/cve-2025-65296

Share on: