← Volver a CVEs
CVE-2024-10934
CRITICAL9.8
Descripcion
In OpenBSD 7.5 before errata 008 and OpenBSD 7.4 before errata 021, avoid possible mbuf double free in NFS client and server implementation, do not use uninitialized variable in error handling of NFS server.
Detalles CVE
Puntuacion CVSS v3.19.8
SeveridadCRITICAL
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado11/15/2024
Ultima modificacion10/2/2025
Fuentenvd
Avistamientos honeypot0
Productos afectados
openbsd:openbsd
Debilidades (CWE)
CWE-415CWE-457
Referencias
https://ftp.openbsd.org/pub/OpenBSD/patches/7.4/common/021_nfs.patch.sig(9119a7d8-5eab-497f-8521-727c672e3725)
https://ftp.openbsd.org/pub/OpenBSD/patches/7.5/common/008_nfs.patch.sig(9119a7d8-5eab-497f-8521-727c672e3725)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.