CVE-2024-56317
CVE-2024-56317
Título es
CVE-2024-56317
Mié, 18/12/2024 – 23:15
Tipo
CWE-281
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-56317
Descripción en
In Matter (aka connectedhomeip or Project CHIP) through 1.4.0.0, the WriteAcl function deletes all existing ACL entries first, and then attempts to recreate them based on user input. If input validation fails during decoding, the process stops, and no entries are restored by access-control-server.cpp, i.e., a denial of service.
19/12/2024
19/12/2024
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
Pendiente de análisis
Enviar en el boletín
Off
