Vulnerability Description
The Mirai botnet through 2024-08-19 mishandles simultaneous TCP connections to the CNC (command and control) server. Unauthenticated sessions remain open, causing resource consumption. For example, an attacker can send a recognized username (such as root), or can send arbitrary data.
CVSS Score
CRITICAL
Related Weaknesses (CWE)
References
- https://cypressthatkid.medium.com/remote-dos-exploit-found-in-mirai-botnet-sourc
- https://flowtriq.com/blog/cve-2024-45163-mirai-botnet-kill-switch
- https://pastebin.com/6tqHnCva
- https://youtu.be/aJkvSr85ML8
FAQ
What is CVE-2024-45163?
CVE-2024-45163 is a vulnerability with a CVSS score of 9.1 (CRITICAL). The Mirai botnet through 2024-08-19 mishandles simultaneous TCP connections to the CNC (command and control) server. Unauthenticated sessions remain open, causing resource consumption. For example, an...
How severe is CVE-2024-45163?
CVE-2024-45163 has been rated CRITICAL with a CVSS base score of 9.1/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2024-45163?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.