CVE-2024-52531

CVSS 3.1 Score 8.4 of 10 (high)

Details

Published Nov 11, 2024
Updated: Nov 12, 2024
CWE ID 120

Summary

CVE-2024-52531 is a newly disclosed vulnerability affecting GNOME libsoup before version 3.6.1. This issue allows a buffer overflow to occur during UTF-8 conversion in the function soup_header_parse_param_list_strict. However, it's important to note that this vulnerability cannot be triggered via network input, which means an attacker would need local access to exploit it. The consequence of a successful exploit could lead to arbitrary code execution and potential system compromise. Users are advised to update their GNOME libsoup packages to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share