CVE-2023-52946: Buffer Overflow
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in vss service component in Synology Drive Client before 3.5.0-16084 allows remote attackers to overwrite trivial buffers and crash the client via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-52946?
CVE-2023-52946 is classified as a critical buffer overflow vulnerability that can allow remote attackers to crash the Synology Drive Client.
How do I fix CVE-2023-52946?
To remediate CVE-2023-52946, upgrade the Synology Drive Client to version 3.5.0-16084 or later.
What components are affected by CVE-2023-52946?
CVE-2023-52946 specifically affects the vss service component in Synology Drive Client before version 3.5.0-16084.
Can CVE-2023-52946 lead to data leakage?
No, CVE-2023-52946 primarily allows for client crashes but does not directly facilitate data leakage.
What types of attacks can exploit CVE-2023-52946?
CVE-2023-52946 can be exploited by remote attackers to overwrite trivial buffers via unspecified vectors.