cve/2024/CVE-2024-49353.md

18 lines
882 B
Markdown
Raw Normal View History

2025-09-29 21:09:30 +02:00
### [CVE-2024-49353](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-49353)
![](https://img.shields.io/static/v1?label=Product&message=Watson%20Speech%20Services%20Cartridge%20for%20IBM%20Cloud%20Pak%20for%20Data&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=4.0.0%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-362%20Concurrent%20Execution%20using%20Shared%20Resource%20with%20Improper%20Synchronization%20('Race%20Condition')&color=brightgreen)
### Description
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data 4.0.0 through 5.0.2 does not properly check inputs to resources that are used concurrently, which might lead to unexpected states, possibly resulting in a crash.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds