Florent Thiéry has found that selected Axis devices were vulnerable to handling certain ethernet frames which could lead to the Axis device becoming unavailable in the network. Axis has released patched AXIS OS versions for the highlighted flaw for products that are still under AXIS OS software support. Please refer to the Axis security advisory for more information and solution.
History

Fri, 29 Nov 2024 06:30:00 +0000


Fri, 29 Nov 2024 05:45:00 +0000


Tue, 26 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
First Time appeared Axis Communications Ab
Axis Communications Ab axis P1428-e Network Camera
Axis Communications Ab axis Q6128-e Ptz Network Camera
CPEs cpe:2.3:a:axis_communications_ab:axis_p1428-e_network_camera:*:*:*:*:*:*:*:*
cpe:2.3:a:axis_communications_ab:axis_q6128-e_ptz_network_camera:*:*:*:*:*:*:*:*
Vendors & Products Axis Communications Ab
Axis Communications Ab axis P1428-e Network Camera
Axis Communications Ab axis Q6128-e Ptz Network Camera
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 26 Nov 2024 07:45:00 +0000

Type Values Removed Values Added
Description Florent Thiéry has found that selected Axis devices were vulnerable to handling certain ethernet frames which could lead to the Axis device becoming unavailable in the network. Axis has released patched AXIS OS versions for the highlighted flaw for products that are still under AXIS OS software support. Please refer to the Axis security advisory for more information and solution.
Weaknesses CWE-1284
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Axis

Published: 2024-11-26T07:21:41.556Z

Updated: 2024-11-29T05:33:54.460Z

Reserved: 2024-09-23T16:37:50.255Z

Link: CVE-2024-47257

cve-icon Vulnrichment

Updated: 2024-11-26T14:52:22.228Z

cve-icon NVD

Status : Received

Published: 2024-11-26T08:15:07.583

Modified: 2024-11-29T06:15:07.170

Link: CVE-2024-47257

cve-icon Redhat

No data.