Dahua Technology released a security advisory about two serious vulnerabilities in its IP cameras, after a report from the Bitdefender IoT Research Team. The vulnerabilities, CVE-2025-31700 and CVE-2025-31701, each have a CVSS score of 8.1 and are due to buffer overflow issues that can let remote attackers crash devices or run arbitrary code.
Malicious packets can exploit vulnerabilities in affected devices, potentially causing service disruptions or allowing remote code execution (RCE). Although Dahua claims some products have protections like Address Space Layout Randomization (ASLR) to lower exploitation risks, denial-of-service (DoS) attack threats are still substantial.
By infosecbulletin
/ Saturday , August 1 2026
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warns of a big rise in attacks on internet-connected programmable logic controllers...
Read More
By infosecbulletin
/ Friday , July 31 2026
A new open-source project named CyberStrike aims to be the first AI tool made for offensive security. It can turn...
Read More
By infosecbulletin
/ Friday , July 31 2026
Many countries are now showing interest to invest in the data center industry in Banglades especially in AI data centers....
Read More
By infosecbulletin
/ Thursday , July 30 2026
NVIDIA has revealed a big flaw with its BlueField DPUs and ConnectX networking systems. This issue could let attackers run...
Read More
By infosecbulletin
/ Wednesday , July 29 2026
India's leading state-owned lender Bank of Baroda acknowledged Monday a security incident after reports that approximately 1 terabyte of customer...
Read More
By infosecbulletin
/ Tuesday , July 28 2026
CISA has put the Fortinet FortiOS vulnerability CVE-2025-68686 in its list of known exploited flaws after ongoing attacks. The flaw...
Read More
By infosecbulletin
/ Tuesday , July 28 2026
OpenAI's CEO Sam Altman says that AI has reached a big milestone. The technology can now make itself better, leading...
Read More
By infosecbulletin
/ Tuesday , July 28 2026
ShinyHunters has publicly claimed responsibility for the Ernst & Young (EY) data breach. The group posted a message on their...
Read More
By infosecbulletin
/ Monday , July 27 2026
Nvidia and over 30 tech firms started a group on Monday to create open-source AI tools for protecting against cyber...
Read More
By infosecbulletin
/ Monday , July 27 2026
Claude's share links from Anthropic showed up in public search results. This raised new privacy worries for users who shared...
Read More
Several popular camera series are affected by vulnerabilities, including IPC-1XXX, IPC-2XXX, IPC-WX, IPC-ECXX, and SD3A, SD2A, SD3D, SDT2A, and SD2C. Only firmware versions built before April 16, 2025, are at risk. Users can check their firmware build date by logging into the web interface and going to the system information section.
Dahua has released updated firmware to fix buffer overflow issues. Customers should visit the Dahua download center or contact local support to apply the patches. Devices updated after April 16, 2025, are no longer vulnerable.
“We strongly suggest, consistent with cybersecurity best practice, that all Dahua customers follow our security advisory… to ensure their systems are up-to-date and maximally protected,” the company said.
IP cameras are becoming common in security systems, highlighting the need for prompt patch management and responsible disclosures. Organizations using Dahua equipment must act quickly to reduce risks and keep their systems safe from exploitation.