CVE-2023-38975

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Aug 29, 2023
Updated: Aug 31, 2023
CWE ID 120

Summary

CVE-2023-38975 is a newly disclosed buffer overflow vulnerability that affects the qdrant version 1.3.2. This issue allows a remote attacker to cause a denial of service by exploiting a flaw in the chucnked_vectors.rs component. The buffer overflow occurs when the application fails to properly handle input data, leading to memory corruption and potentially crashing the service. Attackers can leverage this vulnerability to send specially crafted requests to trigger the buffer overflow, resulting in a denial of service condition. System administrators are advised to update to the latest version of qdrant to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share