CVE-2024-41184
keepalived: Integer overflow vulnerability in vrrp_ipsets_handler
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In the vrrp_ipsets_handler handler (fglobal_parser.c) of keepalived through 2.3.1, an integer overflow can occur. NOTE: this CVE Record might not be worthwhile because an empty ipset name must be configured by the user.
En el controlador vrrp_ipsets_handler (fglobal_parser.c) de keepalived hasta 2.3.1, puede ocurrir un desbordamiento de enteros. NOTA: Es posible que este registro CVE no valga la pena porque el usuario debe configurar un nombre de ipset vacĂo.
A flaw was found in the keepalived package. An integer overflow occurs when incorrect arguments are passed. As a result, reading from an undefined address takes place.
An update for keepalived is now available for Red Hat Enterprise Linux 8. Issues addressed include an integer overflow vulnerability.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2024-07-18 CVE Reserved
- 2024-07-18 CVE Published
- 2024-08-02 CVE Updated
- 2025-04-13 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-190: Integer Overflow or Wraparound
CAPEC
References (3)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://access.redhat.com/security/cve/CVE-2024-41184 | 2025-02-04 | |
https://bugzilla.redhat.com/show_bug.cgi?id=2298532 | 2025-02-04 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Acassen Search vendor "Acassen" | Keepalived Search vendor "Acassen" for product "Keepalived" | * | - |
Affected
| ||||||
Opensuse Search vendor "Opensuse" | Leap Search vendor "Opensuse" for product "Leap" | * | - |
Affected
| ||||||
Suse Search vendor "Suse" | Sle-ha Search vendor "Suse" for product "Sle-ha" | * | - |
Affected
|