CVE-2024-37601
CVE-2024-37601: A heap buffer overflow vulnerability exists in Mercedes Benz NTG 6, potentially allowing attackers to disrupt the User-Data service. This issue affects the user data import/export function within the NTG 6 head units. Exploitation requires local access to the car's USB interface and the use of specifically crafted data. While the CVSS score is 4.6, SOCRadar's Vulnerability Risk Score (SVRS) is 30, indicating a lower immediate risk. However, the potential for service disruption and the "In The Wild" tag suggest monitoring and eventual patching are advisable. This vulnerability could lead to temporary unavailability of user data features. The affected service restarts automatically, mitigating long-term impact, but the exploit demonstrates a potential avenue for more severe attacks if combined with other vulnerabilities.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.