cve/2024/CVE-2024-6227.md

18 lines
833 B
Markdown
Raw Normal View History

2024-08-30 20:52:42 +00:00
### [CVE-2024-6227](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-6227)
![](https://img.shields.io/static/v1?label=Product&message=aimhubio%2Faim&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=unspecified%3C%3D%20latest%20&color=brighgreen)
2024-08-31 19:52:39 +00:00
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-835%20Loop%20with%20Unreachable%20Exit%20Condition%20('Infinite%20Loop')&color=brighgreen)
2024-08-30 20:52:42 +00:00
### Description
2024-08-31 19:52:39 +00:00
A vulnerability in aimhubio/aim version 3.19.3 allows an attacker to cause an infinite loop by configuring the remote tracking server to point at itself. This results in the server endlessly connecting to itself, rendering it unable to respond to other connections.
2024-08-30 20:52:42 +00:00
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds