CVE-2024-34669

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Oct 8, 2024
Updated: Oct 30, 2024
CWE ID 787

Summary

CVE-2024-34669 is a newly disclosed vulnerability affecting librtppayload.so before the SMR Oct-2024 Release 1. This issue involves an out-of-bounds write error during h.263+ format parsing. Successful exploitation allows remote attackers to execute arbitrary code with system privilege, but user interaction is necessary to trigger the vulnerability. Therefore, it poses a significant threat to targeted systems if left unpatched.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share