{"id":"CVE-2024-52296","aliases":["GHSA-7945-5mcv-f2pp","PYSEC-2026-1534"],"url":"https://o3.security/vulnerability/CVE-2024-52296","summary":"libosdp has a null pointer deref in osdp_reply_name","details":"libosdp is an implementation of IEC 60839-11-5 OSDP (Open Supervised Device Protocol) and provides a C library with support for C++, Rust and Python3. At ospd_common.c, on the osdp_reply_name function, any reply id between REPLY_ACK and REPLY_XRD is valid, but names array do not declare all of the range. On a case of an undefined reply id within the range, name will be null (name = names[reply_id - REPLY_ACK];). Null name will casue a crash on next line: if (name[0] == '\\0') as null[0] is invalid. As this logic is not limited to a secure connection, attacker may trigger this vulnerability without any prior knowledge. This issue is fixed in 2.4.0.","published":"2024-11-12T15:58:28.434Z","modified":"2026-08-12T15:16:07.045854Z","cvss":{"score":6.5,"severity":"MEDIUM","vector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"libosdp","fixedVersion":"2.4.0"}],"fix":{"url":"https://github.com/goToMain/libosdp/commit/24409e98a260176765956ec766a04cb35984fab1","label":"goToMain/libosdp@24409e9"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/52xxx/CVE-2024-52296.json"},{"type":"ADVISORY","url":"https://github.com/goToMain/libosdp/security/advisories/GHSA-7945-5mcv-f2pp"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-52296"},{"type":"FIX","url":"https://github.com/goToMain/libosdp/commit/24409e98a260176765956ec766a04cb35984fab1"},{"type":"PACKAGE","url":"https://github.com/goToMain/libosdp"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T15:16:07.045854Z"}}