Description
An unauthenticated local attacker may trick a user to open corrupted project files to execute arbitrary code or crash the system due to an out-of-bounds write vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-53609 | An unauthenticated local attacker may trick a user to open corrupted project files to execute arbitrary code or crash the system due to an out-of-bounds write vulnerability. |
References
| Link | Providers |
|---|---|
| https://cert.vde.com/en/advisories/VDE-2024-024 |
|
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2024-08-02T22:01:25.850Z
Reserved: 2023-11-29T11:39:18.441Z
Link: CVE-2023-49675
Updated: 2024-08-02T22:01:25.850Z
Status : Deferred
Published: 2024-05-06T12:15:07.647
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-49675
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD