216.73.216.36

CVE-2024-45064

· Published 02/04/2025 14:15 · Modified 02/04/2025 22:15

Labels: CVE-2024-45064 2025-04-02CVE-2024-45064CWE-119[email protected]

Essential information

Published
02/04/2025 14:15
Modified
02/04/2025 22:15
Author
Creator
CVSS
8.5 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

CVSS metrics

Description

A buffer overflow vulnerability exists in the FileX Internal RAM interface functionality of STMicroelectronics X-CUBE-AZRTOS-WL 2.0.0. A specially crafted set of network packets can lead to code execution. An attacker can send a sequence of requests to trigger this vulnerability.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
stmicroelectronics / x-cube-azrtos-wl cpe:2.3:a:stmicroelectronics:x-cube-azrtos-wl:2.0.0:*:*:*:*:*:*:*

References