CVE-2024-25763

openNDS 10.2.0 is vulnerable to Use-After-Free via /openNDS/src/auth.c.
Configurations

Configuration 1 (hide)

cpe:2.3:a:opennds:opennds:10.2.0:*:*:*:*:*:*:*

History

14 Apr 2025, 12:57

Type Values Removed Values Added
References () https://github.com/LuMingYinDetect/openNDS_defects/blob/main/openNDS_detect_1.md - () https://github.com/LuMingYinDetect/openNDS_defects/blob/main/openNDS_detect_1.md - Exploit, Third Party Advisory
CPE cpe:2.3:a:opennds:opennds:10.2.0:*:*:*:*:*:*:*
First Time Opennds opennds
Opennds

06 Dec 2024, 21:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-416

21 Nov 2024, 09:01

Type Values Removed Values Added
References () https://github.com/LuMingYinDetect/openNDS_defects/blob/main/openNDS_detect_1.md - () https://github.com/LuMingYinDetect/openNDS_defects/blob/main/openNDS_detect_1.md -
Summary
  • (es) openNDS 10.2.0 es vulnerable a Use-After-Free a través de /openNDS/src/auth.c.

26 Feb 2024, 16:32

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-26 16:27

Updated : 2025-04-14 12:57


NVD link : CVE-2024-25763

Mitre link : CVE-2024-25763

CVE.ORG link : CVE-2024-25763


JSON object : View

Products Affected

opennds

  • opennds
CWE
CWE-416

Use After Free