Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-45064

Опубликовано: 02 апр. 2025
Источник: nvd
CVSS3: 8.5
CVSS3: 9.8
EPSS Низкий

Описание

A buffer overflow vulnerability exists in the FileX Internal RAM interface functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted set of network packets can lead to code execution. An attacker can send a sequence of requests to trigger this vulnerability.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:st:x-cube-azrt-h7rs:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:st:x-cube-azrtos-f4:1.1.0:*:*:*:*:*:*:*
cpe:2.3:a:st:x-cube-azrtos-f7:1.1.0:*:*:*:*:*:*:*
cpe:2.3:a:st:x-cube-azrtos-g0:1.1.0:*:*:*:*:*:*:*
cpe:2.3:a:st:x-cube-azrtos-g4:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:st:x-cube-azrtos-h7:3.3.0:*:*:*:*:*:*:*
cpe:2.3:a:st:x-cube-azrtos-l4:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:st:x-cube-azrtos-l5:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:st:x-cube-azrtos-wb:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:st:x-cube-azrtos-wl:2.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 71%
0.00661
Низкий

8.5 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.5
github
10 месяцев назад

A buffer overflow vulnerability exists in the FileX Internal RAM interface functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted set of network packets can lead to code execution. An attacker can send a sequence of requests to trigger this vulnerability.

EPSS

Процентиль: 71%
0.00661
Низкий

8.5 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-119