CVE-2024-37917

Pexip Infinity before 35.0 has improper input validation that allows remote attackers to trigger a denial of service (software abort) via a crafted signalling message.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:pexip:pexip_infinity:*:*:*:*:*:*:*:*

History

18 Jun 2025, 13:57

Type Values Removed Values Added
First Time Pexip
Pexip pexip Infinity
References () https://docs.pexip.com/admin/security_bulletins.htm - () https://docs.pexip.com/admin/security_bulletins.htm - Vendor Advisory
CPE cpe:2.3:a:pexip:pexip_infinity:*:*:*:*:*:*:*:*

03 Apr 2025, 16:15

Type Values Removed Values Added
Summary
  • (es) PEXIP Infinity antes de 35.0 tiene una validación de entrada inadecuada que permite a los atacantes remotos activar una denegación de servicio (aborto de software) a través de un mensaje de señalización manipulado.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-20

02 Apr 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-02 21:15

Updated : 2025-06-18 13:57


NVD link : CVE-2024-37917

Mitre link : CVE-2024-37917

CVE.ORG link : CVE-2024-37917


JSON object : View

Products Affected

pexip

  • pexip_infinity
CWE
CWE-20

Improper Input Validation