CVE-2024-23310: Use After Free
Published Feb 20, 2024
·Updated
A use-after-free vulnerability exists in the sopenFAMOSread functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .famos file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
Affected Software
3 affected components
Biosig Project libbiosig
Libbiosig Project Libbiosig=2.5.0
Fedoraproject Fedora=40
Event History
Feb 20, 2024
CVE Published
via MITRE·03:29 PM
Data Sourced
via MITRE·03:29 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-23310?
CVE-2024-23310 has a high severity rating due to its potential for arbitrary code execution.
2
How do I fix CVE-2024-23310?
To fix CVE-2024-23310, update the libbiosig to the latest version that addresses this vulnerability.
3
What software is affected by CVE-2024-23310?
CVE-2024-23310 affects libbiosig version 2.5.0 and the Master Branch.
4
Can CVE-2024-23310 lead to data breaches?
Yes, CVE-2024-23310 can lead to data breaches due to arbitrary code execution from a maliciously crafted .famos file.
5
What type of vulnerability is CVE-2024-23310?
CVE-2024-23310 is a use-after-free vulnerability.