CVE-2023-33864
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Jun 7, 2023
Updated: Jan 8, 2025
CWE ID 190
Summary
CVE-2023-33864 is a vulnerability affecting RenderDoc before version 1.27. The issue lies in the StreamReader::ReadFromExternal function, which fails to account for cases where m_InputSize exceeds m_BufferSize. This oversight results in an Integer Overflow, subsequently leading to a Buffer Overflow. Attackers can exploit this vulnerability to execute arbitrary code or cause a denial-of-service condition.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.