FlawAtlas
Search the atlas
CVE-2024-37372 Not scored

CVE-2024-37372

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

Exploit probability 0.5%
Published January 9, 2025
Required by Not available
Last source change June 24, 2026

03 / CONNECTIONS

Connected vulnerabilities

related CGA-39Q6-QWR5-X6H2
related OPENSUSE-SU-2024:14214-1
related OPENSUSE-SU-2024:14435-1
related OPENSUSE-SU-2025:15802-1
related SUSE-SU-2024:2543-1
related SUSE-SU-2024:2574-1

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2024-37372

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

View original source

05 / REFERENCES

Further evidence