CVE-2019-3945: Parrot Anafi Firmware

High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.

Web server running on Parrot ANAFI can be crashed due to the SDK command "Common_CurrentDateTime" being sent to control service with larger than expected date length.

Affected products

  • Parrot Anafi Firmware: before 1.5.0 (fixed in 1.5.0)

Published 2020-04-01. Last modified 2026-06-17.