We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-6227

Infinite Loop in aimhubio/aim



Description

A vulnerability in aimhubio/aim version 3.19.3 allows an attacker to cause an infinite loop by configuring the remote tracking server to point at itself. This results in the server endlessly connecting to itself, rendering it unable to respond to other connections.

Reserved 2024-06-20 | Published 2024-07-08 | Updated 2024-08-30 | Assigner @huntr_ai


HIGH: 7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Problem types

CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')

Product status

Default status
unaffected

Any version
affected

References

huntr.com/bounties/abcea7c6-bb3b-45e9-aa15-9eb6b224451a

cve.org (CVE-2024-6227)

nvd.nist.gov (CVE-2024-6227)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2024-6227

Support options

Helpdesk Chat, Email, Knowledgebase