CVE-2024-45143
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2024-45143 is a Heap-based Buffer Overflow vulnerability affecting Substance3D's Stager versions 3.0.3 and earlier. This issue could allow an attacker to execute arbitrary code in the context of the current user, provided the victim opens a maliciously crafted file. The vulnerability is due to insufficient bounds checking during file processing, posing a significant risk to users who open untrusted files. Successful exploitation could result in serious security consequences, including unauthorized system access or data theft. It is recommended that users immediately update to the latest version of Stager to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.