CVE-2024-34199: Buffer Overflow
Published May 14, 2024
·Updated
TinyWeb 1.94 and below allows unauthenticated remote attackers to cause a denial of service (Buffer Overflow) when sending excessively large elements in the request line.
Affected Software
2 affected components
Ritlabs TinyWeb<=1.94
TinyWeb TinyWeb<1.94
Event History
May 10, 2024
CVE Published
via MITRE·04:24 PM
Data Sourced
via MITRE·04:24 PM
Description
May 14, 2024
Data Sourced
via NVD·03:38 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-34199?
CVE-2024-34199 is classified as a denial of service vulnerability due to a buffer overflow.
2
How do I fix CVE-2024-34199?
To fix CVE-2024-34199, update TinyWeb to version 1.95 or later.
3
What does CVE-2024-34199 allow attackers to do?
CVE-2024-34199 allows unauthenticated remote attackers to cause a denial of service.
4
Which versions of TinyWeb are affected by CVE-2024-34199?
TinyWeb versions 1.94 and below are affected by CVE-2024-34199.
5
What type of attack does CVE-2024-34199 involve?
CVE-2024-34199 involves an attack that triggers a buffer overflow through excessively large request line elements.