{ "id": "CVE-2024-30249", "sourceIdentifier": "security-advisories@github.com", "published": "2024-04-04T19:15:08.293", "lastModified": "2024-04-04T19:24:50.670", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Cloudburst Network provides network components used within Cloudburst projects. A vulnerability in versions prior to `1.0.0.CR1-20240330.101522-15` impacts publicly accessible software depending on the affected versions of Network and allows an attacker to use Network as an amplification vector for a UDP denial of service attack against a third party or as an attempt to trigger service suspension of the host. All consumers of the library should upgrade to at least version `1.0.0.CR1-20240330.101522-15` to receive a fix. There are no known workarounds beyond updating the library." }, { "lang": "es", "value": "Cloudburst Network proporciona componentes de red utilizados en proyectos de Cloudburst. Una vulnerabilidad en versiones anteriores a `1.0.0.CR1-20240330.101522-15` afecta el software de acceso p\u00fablico seg\u00fan las versiones afectadas de la red y permite a un atacante usar la red como vector de amplificaci\u00f3n para un ataque de denegaci\u00f3n de servicio UDP contra un tercero. o como un intento de provocar la suspensi\u00f3n del servicio del anfitri\u00f3n. Todos los consumidores de la librer\u00eda deben actualizar al menos a la versi\u00f3n `1.0.0.CR1-20240330.101522-15` para recibir una soluci\u00f3n. No se conocen workarounds m\u00e1s all\u00e1 de actualizar la librer\u00eda." } ], "metrics": { "cvssMetricV31": [ { "source": "security-advisories@github.com", "type": "Secondary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "CHANGED", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "availabilityImpact": "HIGH", "baseScore": 8.6, "baseSeverity": "HIGH" }, "exploitabilityScore": 3.9, "impactScore": 4.0 } ] }, "weaknesses": [ { "source": "security-advisories@github.com", "type": "Secondary", "description": [ { "lang": "en", "value": "CWE-770" } ] } ], "references": [ { "url": "https://github.com/CloudburstMC/Network/security/advisories/GHSA-6h3m-c6fv-8hvh", "source": "security-advisories@github.com" } ] }