First published: Fri Nov 15 2024(Updated: )
In OpenBSD 7.5 before errata 008 and OpenBSD 7.4 before errata 021, avoid possible mbuf double free in NFS client and server implementation, do not use uninitialized variable in error handling of NFS server.
Credit: 9119a7d8-5eab-497f-8521-727c672e3725
Affected Software | Affected Version | How to fix |
---|---|---|
OpenBSD | <7.5<7.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-10934 has a severity of medium as it involves potential double free vulnerabilities in NFS implementations.
To fix CVE-2024-10934, update OpenBSD to version 7.5 after errata 008 or version 7.4 after errata 021.
CVE-2024-10934 affects OpenBSD versions prior to 7.5 errata 008 and 7.4 errata 021.
CVE-2024-10934 could lead to potential instability or unauthorized access due to double free conditions in NFS client and server implementations.
There is currently no public information indicating that CVE-2024-10934 is being actively exploited in the wild.