CVE-2024-22170: Unchecked buffer in Dynamic DNS client
Published Sep 27, 2024
·Updated
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Western Digital My Cloud ddns-start on Linux allows Overflow Buffers.This issue affects My Cloud: before 5.29.102.
Affected Software
1 affected component
Western Digital My Cloud<5.29.102
Event History
Sep 27, 2024
CVE Published
via MITRE·05:06 PM
Data Sourced
via MITRE·05:06 PM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-22170?
The severity of CVE-2024-22170 is classified as high due to potential for buffer overflow vulnerabilities.
2
How do I fix CVE-2024-22170?
To fix CVE-2024-22170, upgrade to Western Digital My Cloud firmware version 5.29.102 or later.
3
What products are affected by CVE-2024-22170?
CVE-2024-22170 affects Western Digital My Cloud devices running firmware versions prior to 5.29.102.
4
What are the risks associated with CVE-2024-22170?
The risks associated with CVE-2024-22170 include unauthorized access and potential data loss due to buffer overflow vulnerabilities.
5
Is CVE-2024-22170 exploitable remotely?
Yes, CVE-2024-22170 can be exploited remotely if the affected My Cloud devices are exposed to the internet.