Denial of Service Vulnerability in AimHubIO's Tracking Server
CVE-2024-8061
What is CVE-2024-8061?
In version 3.23.0 of AimHubIO's Aim Tracking Server, specific methods designed for retrieving data from external servers lack timeout settings. This oversight can result in the server waiting indefinitely for a response. Consequently, during such instances, the tracking server becomes unresponsive to other requests, effectively leading to a denial of service. The vulnerability is primarily found in the _run_read_instructions method and similar functions that make calls to external resources without adequate timeout controls.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
aimhubio/aim <= unspecified
References
CVSS V3.0
Timeline
Vulnerability published
Vulnerability Reserved
