Description
Unchecked Return Value to NULL Pointer Dereference vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routines fluid_msg::ActionSet::unpack.

This issue affects libfluid: 0.1.0.
Published: 2024-09-18
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Workaround

Until a software patch which fixes this issue is not released, it is highly recommended to not exposed the vulnerable component inside an untrusted network.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-21346 Unchecked Return Value to NULL Pointer Dereference vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routines fluid_msg::ActionSet::unpack. This issue affects libfluid: 0.1.0.
History

Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00167}

epss

{'score': 0.00197}


Fri, 20 Sep 2024 19:30:00 +0000

Type Values Removed Values Added
First Time appeared Opennetworking
Opennetworking libfluid Msg
Weaknesses CWE-476
CPEs cpe:2.3:a:opennetworking:libfluid_msg:0.1.0:*:*:*:*:*:*:*
Vendors & Products Opennetworking
Opennetworking libfluid Msg

Wed, 18 Sep 2024 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Open Networking Foundation
Open Networking Foundation libfluid
CPEs cpe:2.3:a:open_networking_foundation:libfluid:0.1.0:*:*:*:*:*:*:*
Vendors & Products Open Networking Foundation
Open Networking Foundation libfluid
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 18 Sep 2024 14:00:00 +0000

Type Values Removed Values Added
Description Unchecked Return Value to NULL Pointer Dereference vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability is associated with program routines fluid_msg::ActionSet::unpack. This issue affects libfluid: 0.1.0.
Title NULL Pointer Dereference in libfluid_msg library
Weaknesses CWE-690
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L'}


Subscriptions

Open Networking Foundation Libfluid
Opennetworking Libfluid Msg
cve-icon MITRE

Status: PUBLISHED

Assigner: Nozomi

Published:

Updated: 2024-09-18T15:26:29.449Z

Reserved: 2024-01-23T15:02:55.722Z

Link: CVE-2024-23916

cve-icon Vulnrichment

Updated: 2024-09-18T15:26:25.493Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-18T14:15:12.790

Modified: 2024-09-20T19:07:23.750

Link: CVE-2024-23916

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses