PT-2024-31446 · Unknown · Mirai Botnet
Published
2024-08-21
·
Updated
2026-04-11
·
CVE-2024-45163
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Mirai botnet versions prior to 2024-08-19
Description
The Mirai botnet through 2024-08-19 exhibits improper handling of simultaneous TCP connections to the command and control (CNC) server. This allows unauthenticated sessions to remain open, leading to resource consumption. An attacker can exploit this by sending a recognized username, such as
root, or arbitrary data.Recommendations
Update the Mirai botnet to a version after 2024-08-19 to address the improper handling of TCP connections.
Fix
DoS
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mirai Botnet