https://seclists.org/oss-sec/2025/q1/9: CVE-2024-54676: Apache OpenMeetings: Deserialisation of untrusted data in cluster mode
Published Jan 8, 2025
·Updated
Affected Software
1 affected component
Apache OpenMeetings<8.0.0
Frequently Asked Questions
1
What is the severity of CVE-2024-54676?
The severity of CVE-2024-54676 is classified as important.
2
Which versions of Apache OpenMeetings are affected by CVE-2024-54676?
Apache OpenMeetings versions from 2.1.0 before 8.0.0 are affected by CVE-2024-54676.
3
What type of vulnerability is CVE-2024-54676?
CVE-2024-54676 is a deserialization of untrusted data vulnerability in cluster mode.
4
How do I fix CVE-2024-54676?
To fix CVE-2024-54676, upgrade Apache OpenMeetings to version 8.0.0 or later.
5
What are the default clustering instructions related to CVE-2024-54676?
The default clustering instructions can be found on the official Apache OpenMeetings clustering documentation.