CVE-2024-49536

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Nov 15, 2024
CWE ID 125

Summary

CVE-2024-49536 is a newly identified vulnerability affecting Audition versions 23.6.9 and earlier, as well as 24.4.6. This issue entails an out-of-bounds read vulnerability, enabling attackers to access sensitive memory content. The exploitation of this vulnerability allows bypassing of mitigations like Address Space Layout Randomization (ASLR), posing a significant security risk. User interaction is a prerequisite for an attack, requiring victims to open a malicious file.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share