CVE-2024-3184: Null Pointer Dereference
Multiple CWE-476 NULL Pointer Dereference vulnerabilities were found in GoAhead Web Server up to version 6.0.0 when compiled with the MEGOAHEADREPLACEMALLOC flag. Without a memory notifier for allocation failures, remote attackers can exploit these vulnerabilities by sending malicious requests, leading to a crash and Denial of Service (DoS).
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-3184?
CVE-2024-3184 is considered a high severity vulnerability due to the potential for remote exploitation by attackers.
How do I fix CVE-2024-3184?
To fix CVE-2024-3184, update GoAhead Web Server to version 6.0.0 or higher without the ME_GOAHEAD_REPLACE_MALLOC flag.
What vulnerabilities are associated with CVE-2024-3184?
CVE-2024-3184 is associated with NULL Pointer Dereference vulnerabilities that can be exploited by sending malicious requests.
Who is affected by CVE-2024-3184?
Users of GoAhead Web Server up to version 6.0.0 who have enabled the ME_GOAHEAD_REPLACE_MALLOC flag are affected by CVE-2024-3184.
What consequences can result from CVE-2024-3184?
Exploitation of CVE-2024-3184 can lead to denial of service or potentially remote code execution, affecting the availability of the web server.