Metrics
Affected Vendors & Products
Thu, 13 Feb 2025 01:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Thu, 06 Feb 2025 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
ssvc
|
Thu, 06 Feb 2025 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ietf
Ietf generic Udp Encapsulation |
|
Weaknesses | NVD-CWE-Other | |
CPEs | cpe:2.3:a:ietf:generic_udp_encapsulation:-:*:*:*:*:*:*:* | |
Vendors & Products |
Ietf
Ietf generic Udp Encapsulation |
|
Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 05 Feb 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An insecure configuration flaw was found in the Generic UDP Encapsulation Protocol. When configured to not require authentication or filtering, this issue could allow a remote unauthenticated attacker to spoof packets or bypass access controls. | Proposed Generic UDP Encapsulation (GUE) (IETF Draft) do not validate or verify the source of a network packet allowing an attacker to spoof and route arbitrary traffic via an exposed network interface that can lead to spoofing, access control bypass, and other unexpected network behaviors. This can be considered similar to CVE-2020-10136. |
Title | networkmanager: UDP encapsulation protocol excessive trust | Generic UDP Encapsulation (GUE) (IETF Draft) do not validate or verify the source of a network packet |
References |
|
Fri, 17 Jan 2025 01:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An insecure configuration flaw was found in the Generic UDP Encapsulation Protocol. When configured to not require authentication or filtering, this issue could allow a remote unauthenticated attacker to spoof packets or bypass access controls. | |
Title | networkmanager: UDP encapsulation protocol excessive trust | |
Weaknesses | CWE-348 | |
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|

Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2025-02-06T21:24:39.110Z
Reserved: 2024-08-07T20:17:30.815Z
Link: CVE-2024-7596

Updated: 2025-02-05T18:48:06.899Z

Status : Modified
Published: 2025-02-05T18:15:29.470
Modified: 2025-02-06T22:15:39.853
Link: CVE-2024-7596
