VDB
CVE-2024-6284
CVE-2024-6284
PUBLISHED
CVSS 6.300000190734863 MEDIUM
github.com/google/nftable IP addresses were encoded in the wrong byte order
EPSS 0.29% · 21.4th percentile
Risk Scores
CVSS 4.0
6.300000190734863
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
EPSS Score
0.29%
21.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| https://github.com/google/nftables | 0.1.0, 0.2.0 | |
| netfilter | nftables | 0.1.0 |
| github.com | google/nftables | 0.1.0 |
| nftables | 0.1.0 |
Timeline
- Jul 3, 2024 CVE Published
- Jul 4, 2024 EPSS Score
- Jul 26, 2024 EPSS Score
- Aug 18, 2024 EPSS Score
- Sep 9, 2024 EPSS Score
- Oct 2, 2024 EPSS Score
- Oct 5, 2024 Coalition ESS Score
- Oct 24, 2024 EPSS Score
- Nov 16, 2024 EPSS Score
- Dec 9, 2024 EPSS Score
- Jan 23, 2025 EPSS Score
- Feb 15, 2025 EPSS Score
References
- https://github.com/google/nftables/issues/225 discussion
- https://github.com/crowdsecurity/cs-firewall-bouncer/issues/368 discussion
- https://bugs.launchpad.net/ubuntu/+source/crowdsec-firewall-bouncer/+bug/2069596 url
- https://github.com/google/nftables/commit/b1f901b05510bed05c232c5049f68d1511b56a19 fix
- https://nvd.nist.gov/vuln/detail/CVE-2024-6284 advisory
- https://github.com/google/nftables package