CVE-2024-28084

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Mar 3, 2024
Updated: Jan 8, 2025
CWE ID 665

Summary

CVE-2024-28084 is a vulnerability affecting the iNet wireless daemon (IWD) versions up to 2.15. This issue permits attackers to trigger a denial-of-service (DoS) condition or potentially gain unspecified other impact due to incorrect initialization when processing advertised service information. The vulnerability is found in the p2putil.c component of IWD, allowing malicious actors to manipulate the parsing of service information, leading to the daemon crash. Organizations using IWD are advised to update to the latest patched version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • iNet Wireless Daemon
  • Fedora Operating System

Affected Vendors

  • Fedora Project
  • Intel Corp.