CVE-2024-6068

CVSS 3.1 Score 7.3 of 10 (high)

Details

Published Nov 14, 2024
Updated: Nov 15, 2024
CWE ID 1284

Summary

CVE-2024-6068 is a newly discovered memory corruption vulnerability affecting certain products. The issue arises during the processing of DFT files, which can be exploited by local attackers. By manipulating a malicious DFT file, an adversary can disclose confidential information or even execute arbitrary code. To successfully exploit this vulnerability, a legitimate user must open the malicious file.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share