CVE Vulnerabilities

CVE-2024-45692

Loop with Unreachable Exit Condition ('Infinite Loop')

Published: Sep 04, 2024 | Modified: Sep 05, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Webmin before 2.202 and Virtualmin before 7.20.2 allow a network traffic loop via spoofed UDP packets on port 10000.

Weakness

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

Affected Software

Name Vendor Start Version End Version
Virtualmin Virtualmin * 7.20.2 (excluding)
Webmin Webmin * 2.202 (excluding)

References