Skyport Daemon Causing Issues
CVE-2024-42481
7.5HIGH
What is CVE-2024-42481?
The Skyport Daemon (skyportd), utilized in managing the Skyport Panel, has a vulnerability that allows for a significant increase in CPU usage and potential system crashes. This vulnerability arises from the lack of rate limiting on the creation of folders and files through functions like createFolder and createFile. Malicious actors can exploit this weakness by creating thousands of folders and files, leading to 100% CPU utilization and out-of-memory (OOM) conditions, which may result in a crash of the affected system. The issue has been addressed in version 0.2.2.
Affected Version(s)
skyportd < 0.2.2