CVE-2024-52531
CVSS 3.1 Score 8.4 of 10 (high)
Details
Summary
CVE-2024-52531 is a newly disclosed vulnerability affecting GNOME libsoup before version 3.6.1. This issue allows a buffer overflow to occur during UTF-8 conversion in the function soup_header_parse_param_list_strict. However, it's important to note that this vulnerability cannot be triggered via network input, which means an attacker would need local access to exploit it. The consequence of a successful exploit could lead to arbitrary code execution and potential system compromise. Users are advised to update their GNOME libsoup packages to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- GNOME Project