CVE-2024-29131

Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from 2.0 before 2.10.1. Users are recommended to upgrade to version 2.10.1, which fixes the issue.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:commons_configuration:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:a:netapp:ontap_tools:10:*:*:*:*:vmware_vsphere:*:*
cpe:2.3:a:netapp:snapcenter:-:*:*:*:*:*:*:*

History

01 May 2025, 19:13

Type Values Removed Values Added
CPE cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*
cpe:2.3:a:netapp:snapcenter:-:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:*
cpe:2.3:a:netapp:ontap_tools:10:*:*:*:*:vmware_vsphere:*:*
cpe:2.3:a:apache:commons_configuration:*:*:*:*:*:*:*:*
First Time Apache commons Configuration
Netapp ontap Tools
Fedoraproject
Netapp
Apache
Netapp snapcenter
Fedoraproject fedora
References () http://www.openwall.com/lists/oss-security/2024/03/20/4 - () http://www.openwall.com/lists/oss-security/2024/03/20/4 - Mailing List, Third Party Advisory
References () https://lists.apache.org/thread/03nzzzjn4oknyw5y0871tw7ltj0t3r37 - () https://lists.apache.org/thread/03nzzzjn4oknyw5y0871tw7ltj0t3r37 - Mailing List, Vendor Advisory
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SNKDKEEKZNL5FGCTZKJ6CFXFVWFL5FJ7/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SNKDKEEKZNL5FGCTZKJ6CFXFVWFL5FJ7/ - Third Party Advisory
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YD4AFTIIQW662LUAQRMWS6BBKYSZG3YS/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YD4AFTIIQW662LUAQRMWS6BBKYSZG3YS/ - Third Party Advisory
References () https://security.netapp.com/advisory/ntap-20241213-0001/ - () https://security.netapp.com/advisory/ntap-20241213-0001/ - Third Party Advisory

13 Feb 2025, 18:17

Type Values Removed Values Added
Summary (en) Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from 2.0 before 2.10.1. Users are recommended to upgrade to version 2.10.1, which fixes the issue. (en) Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from 2.0 before 2.10.1. Users are recommended to upgrade to version 2.10.1, which fixes the issue.

13 Dec 2024, 14:15

Type Values Removed Values Added
References
  • () https://security.netapp.com/advisory/ntap-20241213-0001/ -

21 Nov 2024, 09:07

Type Values Removed Values Added
References () http://www.openwall.com/lists/oss-security/2024/03/20/4 - () http://www.openwall.com/lists/oss-security/2024/03/20/4 -
References () https://lists.apache.org/thread/03nzzzjn4oknyw5y0871tw7ltj0t3r37 - () https://lists.apache.org/thread/03nzzzjn4oknyw5y0871tw7ltj0t3r37 -
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SNKDKEEKZNL5FGCTZKJ6CFXFVWFL5FJ7/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SNKDKEEKZNL5FGCTZKJ6CFXFVWFL5FJ7/ -
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YD4AFTIIQW662LUAQRMWS6BBKYSZG3YS/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YD4AFTIIQW662LUAQRMWS6BBKYSZG3YS/ -

28 Aug 2024, 15:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.3

01 May 2024, 18:15

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2024/03/20/4 -

30 Mar 2024, 02:15

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SNKDKEEKZNL5FGCTZKJ6CFXFVWFL5FJ7/ -

29 Mar 2024, 05:15

Type Values Removed Values Added
References
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YD4AFTIIQW662LUAQRMWS6BBKYSZG3YS/ -
Summary
  • (es) Vulnerabilidad de escritura fuera de los límites en la configuración de Apache Commons. Este problema afecta a la configuración de Apache Commons: desde 2.0 antes de 2.10.1. Se recomienda a los usuarios actualizar a la versión 2.10.1, que soluciona el problema.

21 Mar 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-21 09:15

Updated : 2025-05-01 19:13


NVD link : CVE-2024-29131

Mitre link : CVE-2024-29131

CVE.ORG link : CVE-2024-29131


JSON object : View

Products Affected

netapp

  • snapcenter
  • ontap_tools

apache

  • commons_configuration

fedoraproject

  • fedora
CWE
CWE-787

Out-of-bounds Write