CVE-2024-49406

CWE-3543 documents3 sources
Severity
4.4MEDIUM
EPSS
0.0%
top 88.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 6

Description

Improper validation of integrity check value in Blockchain Keystore prior to version 1.3.16 allows local attackers to modify transaction. Root privilege is required for triggering this vulnerability.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

Affected Packages1 packages

🔴Vulnerability Details

2
CVEList
CVE-2024-49406: Improper validation of integrity check value in Blockchain Keystore prior to version 12024-11-06
GHSA
GHSA-hfcw-9cjp-85w4: Improper validation of integrity check value in Blockchain Keystore prior to version 12024-11-06
CVE-2024-49406 (MEDIUM CVSS 4.4) | Improper validation of integrity ch | cvebase.io