CVE-2023-3935

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Sep 13, 2023
Updated: Jan 25, 2024
CWE ID 125

Summary

CVE-2023-3935 is a critical heap buffer overflow vulnerability that affects Wibu CodeMeter Runtime network service up to version 7.60b. This issue allows unauthenticated, remote attackers to exploit the vulnerability and achieve remote code execution (RCE). Successful exploitation grants the attacker full access to the host system, posing a significant risk to data confidentiality, integrity, and availability. System administrators are strongly urged to update their CodeMeter Runtime software to a patched version as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • FreeRDP
  • Fedora Operating System
  • Debian

Affected Vendors

  • Debian
  • Fedora Project
  • Freerdp