CVE-2024-46973

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Dec 28, 2024
CWE ID 416

Summary

CVE-2024-46973 is a newly disclosed vulnerability that affects software running as a non-privileged user. The issue permits these users to execute improper GPU system calls, leading to use-after-free kernel exceptions. This vulnerability poses a significant risk as it can potentially allow an attacker to gain elevated privileges and compromise the system. Attackers could exploit this issue by inducing the software to make unintended GPU calls, resulting in memory corruption and a kernel exception. This vulnerability underscores the importance of keeping software up-to-date and implementing robust access control measures.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share