CVE-2024-25450

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Feb 9, 2024
Updated: Feb 15, 2024

Summary

CVE-2024-25450 is a newly discovered vulnerability in imlib2 version 1.9.1. This issue is caused by the way the init_imlib_fonts() function handles memory allocation. As a result, an attacker could potentially exploit this vulnerability to execute arbitrary code or cause a denial-of-service condition. The exact nature of the attack requires further investigation, but users are strongly urged to update to a patched version of imlib2 as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share