Denial of Service Vulnerability in ClickHouse Server by ClickHouse
CVE-2024-6873

Currently unrated

Key Information:

Vendor

ClickHouse

Vendor
CVE Published:
1 August 2024

What is CVE-2024-6873?

A vulnerability in the ClickHouse server allows an unauthenticated attacker to crash the server or redirect its execution flow by sending a specially crafted request to the native interface. This manipulation is constrained to a 256-byte memory range during execution. While no remote code execution exploits have been documented, maintaining an updated version is crucial to mitigate potential threats. Fixes have been applied to all currently supported versions of ClickHouse, and users leveraging forked or older versions can refer to the provided GitHub commit for patches.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

.