CVE-2024-24947
https://notcve.org/view.php?id=CVE-2024-24947
A specially crafted network packet can lead to denial of service. • https://talosintelligence.com/vulnerability_reports/TALOS-2024-1937 https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1937 • CWE-787: Out-of-bounds Write •
CVE-2024-24946
https://notcve.org/view.php?id=CVE-2024-24946
A specially crafted network packet can lead to denial of service. • https://talosintelligence.com/vulnerability_reports/TALOS-2024-1937 https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1937 • CWE-787: Out-of-bounds Write •
CVE-2024-3657 – 389-ds-base: potential denial of service via specially crafted kerberos as-req request
https://notcve.org/view.php?id=CVE-2024-3657
A specially-crafted LDAP query can potentially cause a failure on the directory server, leading to a denial of service Se encontró una falla en 389-ds-base. • https://access.redhat.com/errata/RHSA-2024:3591 https://access.redhat.com/errata/RHSA-2024:3837 https://access.redhat.com/errata/RHSA-2024:4092 https://access.redhat.com/errata/RHSA-2024:4209 https://access.redhat.com/errata/RHSA-2024:4210 https://access.redhat.com/errata/RHSA-2024:4235 https://access.redhat.com/errata/RHSA-2024:4633 https://access.redhat.com/security/cve/CVE-2024-3657 https://bugzilla.redhat.com/show_bug.cgi?id=2274401 https://access.redhat.com/er • CWE-20: Improper Input Validation •
CVE-2024-2199 – 389-ds-base: malformed userpassword may cause crash at do_modify in slapd/modify.c
https://notcve.org/view.php?id=CVE-2024-2199
A denial of service vulnerability was found in 389-ds-base ldap server. • https://access.redhat.com/errata/RHSA-2024:3591 https://access.redhat.com/errata/RHSA-2024:3837 https://access.redhat.com/errata/RHSA-2024:4092 https://access.redhat.com/errata/RHSA-2024:4209 https://access.redhat.com/errata/RHSA-2024:4210 https://access.redhat.com/errata/RHSA-2024:4235 https://access.redhat.com/errata/RHSA-2024:4633 https://access.redhat.com/security/cve/CVE-2024-2199 https://bugzilla.redhat.com/show_bug.cgi?id=2267976 https://access.redhat.com/er • CWE-20: Improper Input Validation •
CVE-2023-30312
https://notcve.org/view.php?id=CVE-2023-30312
An issue discovered in OpenWrt 18.06, 19.07, 21.02, 22.03, and beyond allows off-path attackers to hijack TCP sessions, which could lead to a denial of service, impersonating the client to the server (e.g., for access to files over FTP), and impersonating the server to the client (e.g., to deliver false information from a finance website). • https://blog.apnic.net/2024/06/18/off-path-tcp-hijacking-in-nat-enabled-wi-fi-networks https://news.ycombinator.com/item?id=40723150 https://openwrt.org/docs/guide-developer/security https://www.ndss-symposium.org/ndss-paper/exploiting-sequence-number-leakage-tcp-hijacking-in-nat-enabled-wi-fi-networks • CWE-203: Observable Discrepancy •