Vulnerability Description
Authenticated users can upload specifically crafted files to leak server resources. This behavior can potentially be used to run a denial of service attack against Cloud Controller. The Cloud Foundry project recommends upgrading the following releases: * Upgrade capi release version to 1.194.0 or greater * Upgrade cf-deployment version to v44.1.0 or greater. This includes a patched capi release
Related Weaknesses (CWE)
References
FAQ
What is CVE-2024-38826?
CVE-2024-38826 is a documented vulnerability. Authenticated users can upload specifically crafted files to leak server resources. This behavior can potentially be used to run a denial of service attack against Cloud Controller. The Cloud Foundry...
How severe is CVE-2024-38826?
CVSS scoring is not yet available for CVE-2024-38826. Check NVD for updates.
Is there a patch for CVE-2024-38826?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.