CVE-2023-31331

CVSS 3.1 Score 3 of 10 (low)

Details

Published Feb 11, 2025
CWE ID 1284

Summary

CVE-2023-31331 is a vulnerability affecting the DRTM firmware, which involves improper access control. This issue allows a privileged attacker to execute multiple driver initializations, resulting in stack memory corruption. The consequences of this vulnerability could potentially include a loss of both data integrity and system availability. Attackers could exploit this weakness by manipulating the firmware to gain unauthorized access and execute malicious commands. It is crucial that affected systems are updated as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share