CVE-2024-10918

CVSS 3.1 Score 4.8 of 10 (medium)

Details

Published Feb 27, 2025
CWE ID 121

Summary

CVE-2024-10918 is a newly identified stack-based Buffer Overflow vulnerability affecting libmodbus version 3.1.10. This issue arises when the library attempts to reply to an unexpected Modbus request with an inappropriate response length, resulting in an overflow of the allocated buffer. An attacker can exploit this flaw to execute arbitrary code or cause a denial-of-service condition, leading to potential security risks and system instability. It is crucial for libmodbus users to upgrade to a patched version as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share