CVE-2024-11149
HIGHDescription
In OpenBSD 7.4 before errata 014, vmm(4) did not restore GDTR limits properly on Intel (VMX) CPUs.
Is your site exposed to CVE-2024-11149?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Affected Products
| Vendor | Product |
|---|---|
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
| openbsd | openbsd |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-11149? +
How severe is CVE-2024-11149? +
What products are affected by CVE-2024-11149? +
How do I check if I'm vulnerable to CVE-2024-11149? +
Related Vulnerabilities
NFS in a BSD derived codebase, as used in OpenBSD through 7.4 and FreeBSD through 14.0-RELEASE, allows remote attackers to …
In OpenBSD 7.5 before errata 008 and OpenBSD 7.4 before errata 021, avoid possible mbuf double free in NFS client …
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to …
ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key re-exchange. …
In OpenBSD 7.4 before errata 006 and OpenBSD 7.3 before errata 020, httpd(8) is vulnerable to a NULL dereference when …
In OpenBSD 7.3 before errata 016, npppd(8) could crash by a l2tp message which has an AVP (Attribute-Value Pair) with …