PT-2024-29396 · Yugabyte · Yugabytedb

Ycybfhb

·

Published

2024-09-03

·

Updated

2025-07-03

·

CVE-2024-41435

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions YugabyteDB version 2.21.1.0
Description A buffer overflow issue was discovered in YugabyteDB via the insert into parameter. This issue can be exploited, potentially leading to security breaches. No information is available about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations For YugabyteDB version 2.21.1.0, consider restricting the use of the insert into parameter until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2024-41435

Affected Products

Yugabytedb