NONE · 0

CVE-2024-38826

Authenticated users can upload specifically crafted files to leak server resources. This behavior can potentially be used to run a denial of service attack against Cloud Controller. The Cloud Foundry...

Vulnerability Description

Authenticated users can upload specifically crafted files to leak server resources. This behavior can potentially be used to run a denial of service attack against Cloud Controller. The Cloud Foundry project recommends upgrading the following releases: * Upgrade capi release version to 1.194.0 or greater * Upgrade cf-deployment version to v44.1.0 or greater. This includes a patched capi release

Related Weaknesses (CWE)

References

FAQ

What is CVE-2024-38826?

CVE-2024-38826 is a documented vulnerability. Authenticated users can upload specifically crafted files to leak server resources. This behavior can potentially be used to run a denial of service attack against Cloud Controller. The Cloud Foundry...

How severe is CVE-2024-38826?

CVSS scoring is not yet available for CVE-2024-38826. Check NVD for updates.

Is there a patch for CVE-2024-38826?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.