CVE-2024-41184: Acassen Keepalived

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

In the vrrp_ipsets_handler handler (fglobal_parser.c) of keepalived through 2.3.1, an integer overflow can occur. NOTE: this CVE Record might not be worthwhile because an empty ipset name must be configured by the user.

Affected products

  • Acassen Keepalived: up to and including 2.3.1

Published 2024-07-18. Last modified 2026-06-17.