First published: Wed Sep 18 2024(Updated: )
Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routine fluid_msg::of13::MultipartReplyPortDescription::unpack. This issue affects libfluid: 0.1.0.
Credit: prodsec@nozominetworks.com
Affected Software | Affected Version | How to fix |
---|---|---|
Opennetworking Libfluid Msg | =0.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-31187 is classified as a high severity vulnerability due to the potential for out-of-bounds read which can lead to information disclosure.
To mitigate CVE-2024-31187, upgrade to the latest version of libfluid that addresses this specific vulnerability.
CVE-2024-31187 can allow attackers to exploit an out-of-bounds read, potentially revealing sensitive information from the affected systems.
CVE-2024-31187 specifically affects libfluid version 0.1.0.
Exploitation of CVE-2024-31187 can occur if an attacker sends crafted messages to the libfluid interface, depending on system access.