A Leading Bank Overcomes a Security Breach and Fortifies Threat Detection with Rewterz
June 25, 2024
Rewterz
Multiple WordPress Plugins Vulnerabilities
June 25, 2024

CVE-2024-22271 – VMware Tanzu Spring Cloud Function Vulnerability

Severity

Medium

Analysis Summary

CVE-2024-22271

VMware Tanzu Spring Cloud Function is vulnerable to a denial of service, caused by a flaw when attempting to compose functions with non-existing functions. By sending a specially crafted request, a remote attacker could exploit this vulnerability to cause a denial of service condition.

Impact

  • Denial of Service

Indicators of Compromise

CVE

  • CVE-2024-22271

Affected Vendors

VMWare

Affected Products

  • VMware Tanzu Spring Cloud Function 4.1.0
  • VMware Tanzu Spring Cloud Function 4.0.0

Remediation

Refer to VMware Security Advisory for patch, upgrade or suggested workaround information.

VMware Security Advisory