First published: Thu Sep 26 2024(Updated: )
Out-of-bounds write vulnerability in backup task management functionality in Synology Drive Client before 3.4.0-15721 allows local users with administrator privileges to execute arbitrary commands via unspecified vectors.
Credit: security@synology.com
Affected Software | Affected Version | How to fix |
---|---|---|
Synology Drive Client | <3.4.0-15721 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-49039 is classified as a high severity vulnerability due to its potential for arbitrary command execution.
To mitigate CVE-2022-49039, update Synology Drive Client to version 3.4.0-15721 or later.
CVE-2022-49039 affects local users with administrator privileges on Synology Drive Client versions prior to 3.4.0-15721.
CVE-2022-49039 is an out-of-bounds write vulnerability related to backup task management in Synology Drive Client.
Attackers exploiting CVE-2022-49039 can execute arbitrary commands on affected systems.