CVE-2024-23911

Out-of-bounds read vulnerability caused by improper checking of the option length values in IPv6 NDP packets exists in Cente middleware TCP/IP Network Series, which may allow an unauthenticated attacker to stop the device operations by sending a specially crafted packet.
Configurations

No configuration.

History

21 Nov 2024, 08:58

Type Values Removed Values Added
References () https://jvn.jp/en/vu/JVNVU94016877/ - () https://jvn.jp/en/vu/JVNVU94016877/ -
References () https://www.cente.jp/obstacle/4960/ - () https://www.cente.jp/obstacle/4960/ -

03 Jul 2024, 01:48

Type Values Removed Values Added
CWE CWE-125
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
Summary
  • (es) Existe una vulnerabilidad de lectura fuera de los límites causada por una verificación incorrecta de los valores de longitud de las opciones en los paquetes IPv6 NDP en la serie de redes TCP/IP del middleware Cente, lo que puede permitir que un atacante no autenticado detenga las operaciones del dispositivo enviando un paquete especialmente manipulado.

15 Apr 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-15 11:15

Updated : 2024-11-21 08:58


NVD link : CVE-2024-23911

Mitre link : CVE-2024-23911

CVE.ORG link : CVE-2024-23911


JSON object : View

Products Affected

No product.

CWE
CWE-125

Out-of-bounds Read