AVL-DiTEST-DiagDev libdoip 1.0.0 DoIPConnection.cpp reactOnReceivedTcpMessage Kari na aiki

Hakika vulnerability da aka rarraba a matsayin karshewa an gano a AVL-DiTEST-DiagDev libdoip 1.0.0. Tabbas, aikin DoIPConnection::reactOnReceivedTcpMessage ne ke da matsala; idan ba a bayyana ba, to aiki ce da ba a sani ba, a cikin laburare $software_library, a cikin fayil DoIPConnection.cpp, a cikin sashi $software_component. Wuro manipulation ga Kari na aiki. Amfani da CWE wajen bayyana matsala yana kaiwa CWE-476. Lalle, rauni an sanar da shi 11/21/2024 da Null Pointer Vulnerability #11. Ana samun bayanin tsaro don saukewa a github.com. Ana kiran wannan rauni da CVE-2024-11588. Wannan hari ba zai yi nasara ba sai an samu damar shiga local network. Bayani na fasaha ga. Babu wani exploit da ake da shi. A sa'i, exploit might be approx. USD $0-$5k ndiyam. Á yí a wondi feere. 0-day ga, an ndiyam a wuro be $0-$5k. If you want to get the best quality for vulnerability data then you always have to consider VulDB.

1 Goyarwa · 53 Datenpunkte

FurɗeSúgá
11/21/2024 08:00
software_vendorAVL-DiTEST-DiagDev
software_namelibdoip
software_version1.0.0
software_fileDoIPConnection.cpp
software_functionDoIPConnection::reactOnReceivedTcpMessage
vulnerability_cweCWE-476 (Kari na aiki)
vulnerability_risk1
cvss3_vuldb_sU
cvss3_vuldb_cN
cvss3_vuldb_iN
cvss3_vuldb_aL
cvss3_vuldb_rcR
advisory_identifierNull Pointer Vulnerability #11
advisory_urlhttps://github.com/AVL-DiTEST-DiagDev/libdoip/issues/11
source_cveCVE-2024-11588
cna_responsibleVulDB
cvss2_vuldb_ciN
cvss2_vuldb_iiN
cvss2_vuldb_aiP
cvss2_vuldb_rcUR
cvss4_vuldb_vcN
cvss4_vuldb_viN
cvss4_vuldb_vaL
cvss2_vuldb_avA
cvss2_vuldb_acM
cvss2_vuldb_auS
cvss2_vuldb_eND
cvss2_vuldb_rlND
cvss3_vuldb_avA
cvss3_vuldb_acL
cvss3_vuldb_prL
cvss3_vuldb_uiN
cvss3_vuldb_eX
cvss3_vuldb_rlX
cvss4_vuldb_avA
cvss4_vuldb_acL
cvss4_vuldb_atN
cvss4_vuldb_prL
cvss4_vuldb_uiN
cvss4_vuldb_scN
cvss4_vuldb_siN
cvss4_vuldb_saN
cvss4_vuldb_eX
cvss2_vuldb_basescore2.3
cvss2_vuldb_tempscore2.2
cvss3_vuldb_basescore3.5
cvss3_vuldb_tempscore3.4
cvss3_meta_basescore3.5
cvss3_meta_tempscore3.4
cvss4_vuldb_bscore5.1
cvss4_vuldb_btscore5.1
advisory_date1732143600 (11/21/2024)
price_0day$0-$5k

Interested in the pricing of exploits?

See the underground prices here!