First published: Tue Dec 19 2023(Updated: )
An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Ivanti Avalanche | <6.4.2 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-46224 is considered to be of high severity due to its potential for causing Denial of Service or remote code execution.
To mitigate CVE-2023-46224, users should upgrade their Ivanti Avalanche software to the latest version that addresses this vulnerability.
CVE-2023-46224 can facilitate memory corruption that may lead to Denial of Service (DoS) attacks or remote code execution.
CVE-2023-46224 affects Ivanti Avalanche versions prior to 6.4.2.
Microsoft Windows is not affected by CVE-2023-46224, as the vulnerability is specific to Ivanti Avalanche.