EVerest is an EV charging software stack. An integer overflow in the "v2g_incoming_v2gtp" function in the v2g_server.cpp implementation can allow a remote attacker to overflow the process' heap. This vulnerability is fixed in 2024.3.1 and 2024.6.0.
References
Configurations
No configuration.
History
21 Nov 2024, 09:23
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/EVerest/everest-core/commit/f73620c4c0f626e1097068a47e10cc27b369ad8e - | |
References | () https://github.com/EVerest/everest-core/releases/tag/2024.3.1 - | |
References | () https://github.com/EVerest/everest-core/releases/tag/2024.6.0 - | |
References | () https://github.com/EVerest/everest-core/security/advisories/GHSA-8g9q-7qr9-vc96 - |
11 Jul 2024, 13:05
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
10 Jul 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-10 20:15
Updated : 2024-11-21 09:23
NVD link : CVE-2024-37310
Mitre link : CVE-2024-37310
CVE.ORG link : CVE-2024-37310
JSON object : View
Products Affected
No product.