CVE-2019-5998 describes a buffer overflow vulnerability in the Picture Transfer Protocol (PTP) of numerous Canon EOS series digital cameras and select PowerShot models. An attacker on the same network segment can exploit this flaw by sending a malicious notifybtstatus command, leading to denial of service or arbitrary code execution on the affected device. This vulnerability is rated as high severity (CVSS 8.8), requiring adjacent network access with low attack complexity and no user interaction, potentially resulting in high impact to confidentiality, integrity, and availability. While not listed in CISA's KEV catalog, the vulnerability has garnered significant community discussion and media coverage, including demonstrations of ransomware attacks, though no public exploit code (Metasploit, Nuclei, ExploitDB) is currently available.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.1.0CPE matchmatch criteria | cpe:2.3:o:canon:eos-1d_x_firmware:*:*:*:*:*:*:*:* | ||
<= 1.1.6CPE matchmatch criteria | cpe:2.3:o:canon:eos-1d_x_mkii_firmware:*:*:*:*:*:*:*:* | ||
<= 1.4.1CPE matchmatch criteria | cpe:2.3:o:canon:eos-1d_c_firmware:*:*:*:*:*:*:*:* | ||
<= 1.3.5CPE matchmatch criteria | cpe:2.3:o:canon:eos_5d_mark_iii_firmware:*:*:*:*:*:*:*:* | ||
<= 1.2.0CPE matchmatch criteria | cpe:2.3:o:canon:eos_5d_mark_iv_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.