CVE-2024-51505: Race Condition
Published Feb 18, 2025
·Updated
An issue was discovered in Atos Eviden IDRA before 2.7.1. A highly trusted role (Config Admin) could leverage a race condition to escalate privileges.
Affected Software
1 affected component
Atos Eviden IDRA<2.7.1
Event History
Feb 18, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-51505?
CVE-2024-51505 has been classified as a high-severity vulnerability due to its potential for privilege escalation.
2
How does CVE-2024-51505 exploit the system?
CVE-2024-51505 exploits a race condition that allows a highly trusted role, specifically Config Admin, to escalate their privileges.
3
Which versions of Atos Eviden IDRA are affected by CVE-2024-51505?
CVE-2024-51505 affects all versions of Atos Eviden IDRA prior to 2.7.1.
4
How do I fix CVE-2024-51505?
To fix CVE-2024-51505, you should upgrade Atos Eviden IDRA to version 2.7.1 or later.
5
Who is at risk from CVE-2024-51505?
Admins using Atos Eviden IDRA versions below 2.7.1 may be at risk if highly trusted roles can exploit the vulnerability.