CVE-2023-48024

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Nov 17, 2023
Updated: Nov 25, 2023
CWE ID 416

Summary

CVE-2023-48024 is a newly disclosed vulnerability affecting Liblisp, a common Lisp implementation, up to commit 4c65969. This issue introduces a use-after-free condition in the hash_destroy function located at hash.c. Exploitation of this flaw may lead to arbitrary code execution or memory corruption, potentially causing denial of service or more severe consequences. Users of Liblisp are advised to update to a patched version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share