CVE-2024-57650
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Jan 14, 2025
Updated: Jan 15, 2025
CWE ID 89
Summary
CVE-2024-57650 is a Denial of Service vulnerability affecting the qi_inst_state_free component in openlink virtuoso-opensource version 7.2.11. An attacker can exploit this issue by crafting malicious SQL statements, leading to a crash and causing the server to become unresponsive. The vulnerability allows an adversary to cause disruption to the targeted system, making it unavailable to legitimate users. System administrators are advised to update to a patched version of openlink virtuoso-opensource as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Virtuoso-Opensource
Affected Vendors
- OpenLink Software Inc