First published: Fri Apr 19 2024(Updated: )
A Null Pointer Dereference vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perform denial of service attacks.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ivanti Avalanche | <6.4.3 | |
Ivanti Avalanche | <6.4.3.528 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-24991 has a severity rating that indicates it can lead to denial of service attacks.
To fix CVE-2024-24991, upgrade to Ivanti Avalanche version 6.4.3 or later.
CVE-2024-24991 is a Null Pointer Dereference vulnerability.
CVE-2024-24991 affects users of Ivanti Avalanche versions before 6.4.3.
CVE-2024-24991 involves the WLAvalancheService component of Ivanti Avalanche.