CVE-2023-41484

CVSS 3.1 Score 8.1 of 10 (high)

Details

Published Sep 20, 2023
Updated: Sep 22, 2023
CWE ID 401

Summary

CVE-2023-41484 is a vulnerability affecting the Cimg Library version 2.9.3 by cimg.eu. This issue permits an attacker to extract sensitive data by crafting a malicious JPEG file. The flaw arises due to insufficient input validation in the library's image parsing functionality. Successful exploitation could potentially lead to information disclosure, posing a risk to system security. Users are advised to update to the latest version of the library or take other necessary measures to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share