Security Advisory

CVE-2024-2452

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-03-26 15:43:36
Last updated 2025-02-13 17:40:10
Assigner eclipse
CVSS score 7.0
State PUBLISHED

Description

In Eclipse ThreadX NetX Duo before 6.4.0, if an attacker can control parameters of __portable_aligned_alloc() could cause an integer wrap-around and an allocation smaller than expected. This could cause subsequent heap buffer overflows.