Fiche vulnérabilité
CVE-2024-31195 : faille moyenne Open Networking Foundation (ONF)… (CVSS 6.5)
Description
Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of13::MultipartReplyTable::unpack. This issue affects libfluid: 0.1.0.
En bref
- Sévérité
- Moyenne (CVSS 6.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L
- Exploitation active
- Non signalée par la CISA
- Publication
- 18 sept. 2024
- Dernière mise à jour
- 18 sept. 2024
Produits concernés
- Open Networking Foundation (ONF) libfluid
Correctif et mesures
Until a software patch which fixes this issue is not released, it is highly recommended to not exposed the vulnerable component inside an untrusted network.