In the Mullvad VPN client 2024.6 (Desktop), 2024.8 (iOS), and 2024.8-beta1 (Android), the exception-handling alternate stack can be exhausted, leading to heap-based out-of-bounds writes in enable() in exception_logging/unix.rs, aka MLLVD-CR-24-01. NOTE: achieving code execution is considered non-trivial.
References
Configurations
No configuration.
History
12 Dec 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-787 | |
Summary |
|
12 Dec 2024, 02:08
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-12 02:08
Updated : 2024-12-12 17:15
NVD link : CVE-2024-55884
Mitre link : CVE-2024-55884
CVE.ORG link : CVE-2024-55884
JSON object : View
Products Affected
No product.
CWE
CWE-787
Out-of-bounds Write