CVE-2024-38952: Buffer Overflow
Published Jun 25, 2024
·Updated
PX4-Autopilot v1.14.3 was discovered to contain a buffer overflow via the topicname parameter at /logger/loggedtopics.cpp.
Affected Software
2 affected components
PX4 Autopilot
Dronecode Px4 Drone Autopilot=1.14.3
Event History
Jun 25, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-38952?
CVE-2024-38952 has been classified as a high severity vulnerability due to the potential for a buffer overflow that can lead to arbitrary code execution.
2
How do I fix CVE-2024-38952?
To fix CVE-2024-38952, update PX4-Autopilot to version 1.14.4 or higher where the issue has been addressed.
3
What is the impact of CVE-2024-38952?
The impact of CVE-2024-38952 includes the possibility of an attacker exploiting the buffer overflow to execute arbitrary code on the affected system.
4
Which software is affected by CVE-2024-38952?
CVE-2024-38952 affects PX4 Autopilot version 1.14.3 specifically.
5
Where in the code can I find CVE-2024-38952?
CVE-2024-38952 can be found in the /logger/logged_topics.cpp file at specific lines where the buffer overflow vulnerability originates.