Splunk Enterprise Crash Vulnerability
CVE-2024-36982
Key Information:
- Vendor
Splunk
- Vendor
- CVE Published:
- 1 July 2024
What is CVE-2024-36982?
In certain versions of Splunk Enterprise and Splunk Cloud Platform, a vulnerability exists that allows an attacker to invoke a null pointer reference on the cluster/config REST endpoint. This flaw may lead to a crash of the Splunk daemon, potentially impacting the availability and functionality of the affected services. Users of these versions should take caution and consider updating to secure versions to mitigate any associated risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Splunk Cloud Platform 9.1.2312 < 9.1.2312.109
Splunk Cloud Platform 9.1.2308 < 9.1.2308.207
Splunk Enterprise 9.2 < 9.2.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved