CVE-2024-51127: Infoleak
An issue in the createTempFile method of hornetq v2.4.9 allows attackers to arbitrarily overwrite files or access sensitive information.
Other sources
An issue in the createTempFile method of hornetq v2.4.9 allows attackers to arbitrarily overwrite files or access sensitive information.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-51127?
CVE-2024-51127 has been categorized as a high severity vulnerability due to its potential for arbitrary file overwriting and disclosure of sensitive information.
How do I fix CVE-2024-51127?
To fix CVE-2024-51127, upgrade hornetq to version 2.4.10 or later, which addresses this vulnerability.
What systems are affected by CVE-2024-51127?
CVE-2024-51127 affects hornetq v2.4.9 and any software using this version, including Red Hat Hornetq.
What type of vulnerability is CVE-2024-51127?
CVE-2024-51127 is an arbitrary file overwrite vulnerability that can lead to potential information disclosure.
Can CVE-2024-51127 be exploited remotely?
Yes, CVE-2024-51127 can be exploited remotely, allowing attackers to gain unauthorized access to files on affected systems.