{"id":805,"date":"2024-02-28T07:20:44","date_gmt":"2024-02-28T05:20:44","guid":{"rendered":"https:\/\/techlance.ddns.net\/?p=805"},"modified":"2024-02-28T07:20:56","modified_gmt":"2024-02-28T05:20:56","slug":"azure-iot-platform-device-sdkn-kahdenkertainen-vapautuksen-haavoittuvuus","status":"publish","type":"post","link":"https:\/\/techlance.ddns.net\/en\/azure-iot-platform-device-sdkn-kahdenkertainen-vapautuksen-haavoittuvuus\/","title":{"rendered":"Azure IoT Platform Device SDK:n kahdenkertainen vapautuksen haavoittuvuus"},"content":{"rendered":"<p>Luokitus: Kriittinen, Ratkaisu: Virallinen korjaus, Hyv\u00e4ksik\u00e4yt\u00f6n kypsyys: Todistamaton, CVSSv3.1: 9.8, CVEt: CVE-2024-27099, Yhteenveto: uAMQP on C-kirjasto AMQP 1.0 -viestint\u00e4\u00e4n Azure-pilvipalveluihin. Virheellisen AMQP_VALUE ep\u00e4onnistuneen tilan k\u00e4sittely saattaa aiheuttaa kahdenkertaisen vapautuksen ongelman. T\u00e4m\u00e4 saattaa aiheuttaa et\u00e4k\u00e4ytt\u00f6oikeuksien saamisen (RCE).<\/p>\n\n\n\n<p>Classification: Critical, Solution: Official Fix, Exploit Maturity: Unproven, CVSSv3.1: 9.8, CVEs: CVE-2024-27099, Summary: The uAMQP is a C library for AMQP 1.0 communication to Azure Cloud Services. When processing an incorrect AMQP_VALUE failed state, may cause a double free problem. This may cause a RCE.<\/p>\n\n\n\n<p><a href=\"https:\/\/github.com\/Azure\/azure-uamqp-c\/security\/advisories\/GHSA-6rh4-fj44-v4jj\">https:\/\/github.com\/Azure\/azure-uamqp-c\/security\/advisories\/GHSA-6rh4-fj44-v4jj<\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>Luokitus: Kriittinen, Ratkaisu: Virallinen korjaus, Hyv\u00e4ksik\u00e4yt\u00f6n kypsyys: Todistamaton, CVSSv3.1: 9.8, CVEt: CVE-2024-27099, Yhteenveto: uAMQP on C-kirjasto AMQP 1.0 -viestint\u00e4\u00e4n Azure-pilvipalveluihin. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[19,10,9],"tags":[14,15],"class_list":["post-805","post","type-post","status-publish","format-standard","hentry","category-azure","category-platform","category-security","tag-azure","tag-tietoturva"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts\/805","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/comments?post=805"}],"version-history":[{"count":0,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts\/805\/revisions"}],"wp:attachment":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/media?parent=805"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/categories?post=805"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/tags?post=805"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}