Description

Off-by-one error vulnerability in the transmission component in Synology Replication Service before 1.0.12-0066, 1.2.2-0353 and 1.3.0-0423 and Synology Unified Controller (DSMUC) before 3.1.4-23079 allows remote attackers to execute arbitrary code, potentially leading to a broader impact across the system via unspecified vectors.

INFO

Published Date :

2025-03-19T02:14:03.691Z

Last Modified :

2025-03-19T14:13:16.719Z

Source :

synology
AFFECTED PRODUCTS

The following products are affected by CVE-2024-10442 vulnerability.

Vendors Products
Syncology
  • Replication Service
Synology
  • Diskstation Manager
  • Diskstation Manager Unified Controller
  • Replication Service
  • Unified Controller
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-10442.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact