CVE-2024-7576: Progress UI for WPF format provider unsafe deserialization vulnerability
Published Sep 25, 2024
·Updated
In Progress Telerik UI for WPF versions prior to 2024 Q3 (2024.3.924), a code execution attack is possible through an insecure deserialization vulnerability.
Affected Software
1 affected component
Telerik UI for WPF<2024.3.924
Event History
Sep 25, 2024
CVE Published
via MITRE·01:57 PM
Data Sourced
via MITRE·01:57 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-7576?
CVE-2024-7576 is classified as a code execution vulnerability due to insecure deserialization.
2
How do I fix CVE-2024-7576?
To fix CVE-2024-7576, update Telerik UI for WPF to version 2024 Q3 (2024.3.924) or later.
3
What versions of Telerik UI for WPF are affected by CVE-2024-7576?
All versions of Telerik UI for WPF prior to 2024 Q3 (2024.3.924) are affected by CVE-2024-7576.
4
What type of attack is possible due to CVE-2024-7576?
CVE-2024-7576 allows for code execution attacks through an insecure deserialization vulnerability.
5
Is CVE-2024-7576 related to any other vulnerabilities?
CVE-2024-7576 specifically addresses issues related to insecure deserialization, which is a common vector for various vulnerabilities.