CVE-2024-56186

CVSS 3.1 Score 5.1 of 10 (medium)

Details

Published Mar 10, 2025
Updated: Mar 11, 2025
CWE ID 125

Summary

CVE-2024-56186 is a newly disclosed cybersecurity vulnerability affecting secureelementimpl.cpp in a specific software component. This issue involves an incorrect bounds check in the "closeChannel" function, potentially allowing for a precise out-of-bounds read. The consequences of this vulnerability are local information disclosure, meaning sensitive data could be exposed, and no additional execution privileges or user interaction are required to exploit it.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share