Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-36844

Опубликовано: 31 мая 2024
Источник: debian

Описание

libmodbus v3.1.6 was discovered to contain a use-after-free via the ctx->backend pointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted message sent to the unit-test-server.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libmodbusfixed3.1.6-2.1package
libmodbuspostponedbusterpackage

Примечания

  • https://github.com/stephane/libmodbus/issues/749

  • https://github.com/stephane/libmodbus/commit/b4ef4c17d618eba0adccc4c7d9e9a1ef809fc9b6 (v3.1.7)

  • Same fix as CVE-2022-0367 (and potentially a duplicate)

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 1 года назад

libmodbus v3.1.6 was discovered to contain a use-after-free via the ctx->backend pointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted message sent to the unit-test-server.

CVSS3: 7.5
nvd
больше 1 года назад

libmodbus v3.1.6 was discovered to contain a use-after-free via the ctx->backend pointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted message sent to the unit-test-server.

CVSS3: 7.5
github
больше 1 года назад

libmodbus v3.1.6 was discovered to contain a use-after-free via the ctx->backend pointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted message sent to the unit-test-server.