CVE-2024-28894

Out-of-bounds read vulnerability caused by improper checking of the option length values in IPv6 headers exists in Cente middleware TCP/IP Network Series, which may allow an unauthenticated attacker to stop the device operations by sending a specially crafted packet.
Configurations

No configuration.

History

21 Nov 2024, 09:07

Type Values Removed Values Added
References () https://jvn.jp/en/vu/JVNVU94016877/ - () https://jvn.jp/en/vu/JVNVU94016877/ -
References () https://www.cente.jp/obstacle/4960/ - () https://www.cente.jp/obstacle/4960/ -

01 Aug 2024, 13:49

Type Values Removed Values Added
CWE CWE-125
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3
Summary
  • (es) Existe una vulnerabilidad de lectura fuera de los límites causada por una verificación incorrecta de los valores de longitud de las opciones en los encabezados IPv6 en la serie de redes TCP/IP del middleware Cente, que puede permitir que un atacante no autenticado detenga las operaciones del dispositivo enviando un paquete especialmente manipulado.

15 Apr 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-15 11:15

Updated : 2024-11-21 09:07


NVD link : CVE-2024-28894

Mitre link : CVE-2024-28894

CVE.ORG link : CVE-2024-28894


JSON object : View

Products Affected

No product.

CWE
CWE-125

Out-of-bounds Read