CVE-2024-30165: Buffer Overflow
Amazon AWS Client VPN before 3.9.1 on macOS has a buffer overflow that could potentially allow a local actor to execute arbitrary commands with elevated permissions, a different vulnerability than CVE-2024-30164.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30165?
CVE-2024-30165 is classified as a critical vulnerability due to its potential to allow local actors to execute arbitrary commands with elevated permissions.
How do I fix CVE-2024-30165?
To address CVE-2024-30165, upgrade your Amazon AWS Client VPN to version 3.9.1 or later.
Who is affected by CVE-2024-30165?
CVE-2024-30165 affects users running Amazon AWS Client VPN versions before 3.9.1 on macOS.
What type of vulnerability is CVE-2024-30165?
CVE-2024-30165 is a buffer overflow vulnerability that could lead to arbitrary command execution.
Can CVE-2024-30165 be exploited remotely?
CVE-2024-30165 requires local access, meaning only locally authenticated users can exploit this vulnerability.