CVE-2024-46488

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Sep 25, 2024
Updated: Oct 2, 2024
CWE ID 122
CWE ID 787

Summary

CVE-2024-46488 is a recently disclosed vulnerability affecting sqlite-vec version 0.1.1. This issue involves a heap buffer overflow in the npy_token_next function, which can be exploited by attackers to cause a Denial of Service (DoS). By providing a specifically crafted file, they can successfully trigger the vulnerability and disrupt the targeted system's functionality.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share