First published: Wed Sep 18 2024(Updated: )
Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of10::StatsReplyQueue::unpack. This issue affects libfluid: 0.1.0.
Credit: prodsec@nozominetworks.com
Affected Software | Affected Version | How to fix |
---|---|---|
Opennetworking Libfluid Msg | =0.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-31170 is classified as a medium severity vulnerability due to its potential for causing out-of-bounds read conditions.
To mitigate CVE-2024-31170, update to a version of libfluid beyond 0.1.0 where the vulnerability is addressed.
The affected system for CVE-2024-31170 is libfluid version 0.1.0.
The impact of CVE-2024-31170 could lead to potential information leakage or application crashes due to incorrect memory access.
CVE-2024-31170 was reported by security researchers examining the libfluid library.