CVE-2024-5558: Race Condition
CWE-367: Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability exists that could cause escalation of privileges when an attacker abuses a limited admin account.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5558?
CVE-2024-5558 has been classified as a high severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2024-5558?
To mitigate CVE-2024-5558, update your Schneider Electric Spacelogic AS-B or AS-P firmware to the latest version beyond 6.0.1.
What does CVE-2024-5558 exploit?
CVE-2024-5558 exploits a Time-of-check Time-of-use (TOCTOU) race condition which can allow limited admin accounts to escalate privileges.
Which software versions are affected by CVE-2024-5558?
CVE-2024-5558 affects Schneider Electric Spacelogic AS-B and AS-P firmware versions up to 6.0.1.
Can CVE-2024-5558 directly affect hardware devices?
CVE-2024-5558 impacts the firmware of Schneider Electric Spacelogic devices, potentially affecting their security and functionality.