Back to Database
Status published
Unknown
CVE-2024-45288
Multiple vulnerabilities in libnv
Vulnerability Description
A missing null-termination character in the last element of an nvlist array string can lead to writing outside the allocated buffer.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-45288
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Synacktiv
More from FreeBSD
View All →CVE-2025-24934
SO_REUSEPORT_LB breaks connect(2) for UDP sockets
Unknown
0
CVE-2025-15576
Jail chroot escape via fd exchange with a different jail
Unknown
0
CVE-2025-15547
Jail escape by a privileged user via nullfs
Unknown
0
CVE-2025-14769
ipfw denial of service
Unknown
0
CVE-2025-14558
Remote code execution via ND6 Router Advertisements
Unknown
0
Affected Vendor
FreeBSD
View all reports →Affected Software
FreeBSD
Vulnerable Versions:
14.1-RELEASE, 14.0-RELEASE, 13.3-RELEASE
Timeline
Official Publish:
September 5th, 2024
Last Modified:
September 20th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
No vector data available