CVE-2024-27758
EUVD-2024-016012.03.2024, 16:15
In RPyC before 6.0.0, when a server exposes a method that calls the attribute named __array__ for a client-provided netref (e.g., np.array(client_netref)), a remote attacker can craft a class that results in remote code execution.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| rpyc_project | rpyc | 𝑥 < 6.0.0 | ADP |
Debian Releases
Ubuntu Releases
Common Weakness Enumeration