CVE-2024-57650

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 14, 2025
Updated: Jan 15, 2025
CWE ID 89

Summary

CVE-2024-57650 is a Denial of Service vulnerability affecting the qi_inst_state_free component in openlink virtuoso-opensource version 7.2.11. An attacker can exploit this issue by crafting malicious SQL statements, leading to a crash and causing the server to become unresponsive. The vulnerability allows an adversary to cause disruption to the targeted system, making it unavailable to legitimate users. System administrators are advised to update to a patched version of openlink virtuoso-opensource as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Virtuoso-Opensource

Affected Vendors

  • OpenLink Software Inc