April 17, 2024, 12:10 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Ivanti Avalanche Received an Update for Over Two Dozen Vulnerabilities (CVE-2024-24996, CVE-2024-29204…)

Ivanti has recently issued security updates to address multiple vulnerabilities in Avalanche. These vulnerabilities, ranging from medium to critical severity, pose risks such as information disclosure, command execution, and Denial-of-Service (DoS) attacks.


Ivanti Avalanche serves as a Mobile Device Management (MDM) solution, allowing administrators to remotely manage devices and updates.


Importantly, the update includes two critical vulnerabilities, identified as CVE-2024-24996 and CVE-2024-29204. These vulnerabilities both originate from heap …

address attacks avalanche command critical cve cve-2024 disclosure dos information information disclosure ivanti ivanti avalanche medium risks security security updates service severity update updates vulnerabilities

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Engineering Practice Lead

@ NCC Group | GBR Manchester Hardman Boulevard

Senior Cyber Security Engineer - Cloud & Multifactor Authentication

@ General Motors | GM Global Technical Center - Michigan IT Innovation Center