CVE-2024-56184

CVSS 3.1 Score 5.1 of 10 (medium)

Details

Published Mar 10, 2025
Updated: Mar 11, 2025
CWE ID 125

Summary

CVE-2024-56184 is a newly disclosed vulnerability affecting the static long dev_send function in tipc_dev_ql. The issue stems from an incorrect bounds check in this function, leading to a possible out-of-bounds read. This vulnerability could potentially result in local information disclosure without requiring any additional execution privileges. Notably, user interaction is not necessary for exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share