First published: Fri Mar 03 2023(Updated: )
Cubism Core in Live2D Cubism Editor 4.2.03 allows out-of-bounds write via a crafted Section Offset Table or Count Info Table in an MOC3 file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Live2D | =4.2.03 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27566 is considered a high severity vulnerability due to its potential for an out-of-bounds write.
To remediate CVE-2023-27566, upgrade to Live2D Cubism Editor version 4.2.04 or later.
CVE-2023-27566 affects Live2D Cubism Editor version 4.2.03.
CVE-2023-27566 is an out-of-bounds write vulnerability associated with crafted MOC3 files.
Yes, CVE-2023-27566 can potentially be exploited remotely through malicious MOC3 files.