First published: Fri May 31 2024(Updated: )
libmodbus v3.1.6 was discovered to contain a use-after-free via the ctx->backend pointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted message sent to the unit-test-server.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
libmodbus |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-36844 has a severity rating that indicates it can lead to Denial of Service (DoS).
To fix CVE-2024-36844, update to the latest version of libmodbus that addresses this vulnerability.
An attacker can exploit CVE-2024-36844 to cause a Denial of Service by sending a crafted message to the unit-test-server.
CVE-2024-36844 affects libmodbus version 3.1.6.
A use-after-free vulnerability, like CVE-2024-36844, occurs when a program continues to use a memory location after it has been freed, potentially leading to crashes or unexpected behavior.