CVE-2024-58380

⚪ Do wiadomości

Podatność w PocketMine-MP powoduje awarię serwera przy nieprawidłowej wartości slotu inwentarza.

CVSS
6.5
EPSS
0.4%
Exploit
none
Vendor
Opis źródłowy (NVD)

PocketMine-MP versions before 5.11.2 contain a denial of service vulnerability in BookEditPacket handling that crashes the server when an invalid inventory slot value is provided. Attackers can send a crafted BookEditPacket with an inventory slot greater than 35 to trigger an unhandled exception and crash the server.

dos Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS6.5
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.4%
Opublikowano (NVD)2026-09-09 14:17:10 UTC
Ostatnia modyfikacja (NVD)2026-09-18 18:17:02 UTC
Referencje