Podatność CVE-2024-31420


Publikacja: 2024-04-03

Opis:
A NULL pointer dereference flaw was found in KubeVirt. This flaw allows an attacker who has access to a virtual machine guest on a node with DownwardMetrics enabled to cause a denial of service by issuing a high number of calls to vm-dump-metrics --virtio.

Typ:

CWE-476

(NULL Pointer Dereference)

 Referencje:
https://access.redhat.com/security/cve/CVE-2024-31420
https://bugzilla.redhat.com/show_bug.cgi?id=2272951

Copyright 2024, cxsecurity.com

 

Back to Top