Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-41457 | Quicly is an IETF QUIC protocol implementation. Quicly up to commtit d720707 is susceptible to a denial-of-service attack. A remote attacker can exploit these bugs to trigger an assertion failure that crashes process using quicly. The vulnerability is addressed with commit 2a95896104901589c495bc41460262e64ffcad5c. |
Tue, 12 Nov 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dena
Dena quicly |
|
| CPEs | cpe:2.3:a:dena:quicly:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Dena
Dena quicly |
Tue, 15 Oct 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
H2o Project
H2o Project quicly |
|
| CPEs | cpe:2.3:a:h2o_project:quicly:*:*:*:*:*:*:*:* | |
| Vendors & Products |
H20
H20 quickly |
H2o Project
H2o Project quicly |
Fri, 11 Oct 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
H20
H20 quickly |
|
| CPEs | cpe:2.3:a:h20:quickly:*:*:*:*:*:*:*:* | |
| Vendors & Products |
H20
H20 quickly |
|
| Metrics |
ssvc
|
Fri, 11 Oct 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Quicly is an IETF QUIC protocol implementation. Quicly up to commtit d720707 is susceptible to a denial-of-service attack. A remote attacker can exploit these bugs to trigger an assertion failure that crashes process using quicly. The vulnerability is addressed with commit 2a95896104901589c495bc41460262e64ffcad5c. | |
| Title | Quicly assertion failures | |
| Weaknesses | CWE-617 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-10-15T16:11:05.956Z
Reserved: 2024-08-28T20:21:32.802Z
Link: CVE-2024-45396
Updated: 2024-10-11T15:01:16.988Z
Status : Analyzed
Published: 2024-10-11T15:15:04.457
Modified: 2024-11-12T20:05:09.367
Link: CVE-2024-45396
No data.
OpenCVE Enrichment
No data.
EUVD