CVE-2024-22097

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Feb 20, 2024
Updated: Apr 2, 2024
CWE ID 415

Summary

CVE-2024-22097 is a newly identified vulnerability affecting The Biosig Project's libbiosig Master Branch (ab0ee111) and version 2.5.0. This issue involves a double-free vulnerability in the BrainVision Header Parsing functionality. A maliciously crafted .vdhr file can trigger this flaw, potentially leading to arbitrary code execution. An attacker can take advantage of this vulnerability by supplying a specially designed file to exploit the double-free condition, thereby gaining unauthorized access and control over the affected system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share