CVE-2024-54952: Null Pointer Dereference
MikroTik RouterOS 6.40.5, the SMB service contains a memory corruption vulnerability. Remote, unauthenticated attackers can exploit this issue by sending specially crafted packets, triggering a null pointer dereference. This leads to a Remote Denial of Service (DoS), rendering the SMB service unavailable.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-54952?
CVE-2024-54952 is a high severity vulnerability that allows remote unauthenticated attackers to exploit the SMB service in MikroTik RouterOS.
How do I fix CVE-2024-54952?
To fix CVE-2024-54952, you should update MikroTik RouterOS to the latest version that contains the security patch.
What type of vulnerability is CVE-2024-54952?
CVE-2024-54952 is a memory corruption vulnerability that leads to a Remote Denial of Service (DoS) when exploited.
Who is affected by CVE-2024-54952?
Users of MikroTik RouterOS version 6.40.5 are affected by CVE-2024-54952.
What impact does CVE-2024-54952 have on systems?
CVE-2024-54952 can cause the SMB service to become unavailable, leading to a denial of service for legitimate users.