CVE-2024-20038
published 2024-03-04CVE-2024-20038: In pq, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution…
PriorityP49low3.4CVSS 3.1
AVLACLPRHUINSUCLILAN
EPSS
0.10%
1.0th percentile
In pq, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08495932; Issue ID: ALPS08495932.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Suricata
ET EXPLOIT SonicWall SMA Stack-Based Buffer Overflow CVE-2021-20038 M1
suricata·2022-01-26·CVSS 9.8
CVE-2021-20038 [CRITICAL] ET EXPLOIT SonicWall SMA Stack-Based Buffer Overflow CVE-2021-20038 M1
ET EXPLOIT SonicWall SMA Stack-Based Buffer Overflow CVE-2021-20038 M1
Rule: alert http any any -> [$HOME_NET,$HTTP_SERVERS] any (msg:"ET EXPLOIT SonicWall SMA Stack-Based Buffer Overflow CVE-2021-20038 M1"; flow:established,to_server; urilen:>400; threshold: type threshold, track by_src, count 10, seconds 30; http.request_line; content:"GET /%"; startswith; pcre:"/^[a-zA-Z0-9]{2}[%a-zA-Z0-9]{9}(?P(?:[%a-zA-Z0-9]{3}){4})(?P=addr)/R"; content:"%64%b8%06%08"; within:55; fast_pattern; content:"?"; reference:cve,2021-20038; classtype:attempted-admin; sid:2034984; rev:2; metadata:attack_target Server, created_at 2022_01_26, cve CVE_2021_20038, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, tag Exploit, tag CISA_KEV, updated_at 2024_03_08, mitre_tactic_id
Suricata
ET EXPLOIT SonicWall SMA Stack-Based Buffer Overflow CVE-2021-20038 M2
suricata·2022-01-26·CVSS 9.8
CVE-2021-20038 [CRITICAL] ET EXPLOIT SonicWall SMA Stack-Based Buffer Overflow CVE-2021-20038 M2
ET EXPLOIT SonicWall SMA Stack-Based Buffer Overflow CVE-2021-20038 M2
Rule: alert http any any -> [$HOME_NET,$HTTP_SERVERS] any (msg:"ET EXPLOIT SonicWall SMA Stack-Based Buffer Overflow CVE-2021-20038 M2"; flow:established,to_server; urilen:>400; threshold: type threshold, track by_src, count 10, seconds 30; http.request_line; content:"GET /%"; startswith; pcre:"/^[a-zA-Z0-9]{2}[%a-zA-Z0-9]{9}(?P(?:[%a-zA-Z0-9]{3}){4})(?P=addr)/R"; content:"%08%b7%06%08"; within:55; fast_pattern; content:"?"; reference:cve,2021-20038; classtype:attempted-admin; sid:2034985; rev:2; metadata:attack_target Server, created_at 2022_01_26, cve CVE_2021_20038, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, tag Exploit, tag CISA_KEV, updated_at 2024_03_08, mitre_tactic_id
No public exploits indexed.
2024-03-04
Published