CVE-2024-32631

CVSS 3.1 Score 7.2 of 10 (high)

Details

Published Apr 16, 2024
CWE ID 125

Summary

CVE-2024-32631 is a newly identified vulnerability affecting the ASR180X series of networking devices. This issue involves an out-of-bounds read error in the ciCCIOTOPT component. The consequence of this flaw is incorrect computations, which could potentially lead to unintended behavior or system crashes. Successful exploitation of this vulnerability requires an attacker to have valid access to the targeted device, increasing the risk for insider threats. The exact impact remains to be assessed, and affected organizations are advised to apply the forthcoming patch as soon as it becomes available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share