CVE-2024-8011: Medium severity logi options+ vulnerability
Published Aug 25, 2024
·Updated
Logitech Options+ on MacOS prior 1.72 allows a local attacker to inject dynamic library within Options+ runtime and abuse permissions granted by the user to Options+ such as Camera.
Affected Software
1 affected component
Logitech Options\+ Macos<1.72
Event History
Aug 25, 2024
CVE Published
via MITRE·11:44 AM
Data Sourced
via MITRE·11:44 AM
DescriptionWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-8011?
CVE-2024-8011 is rated as a medium severity vulnerability due to the potential for local attackers to abuse permissions.
2
How do I fix CVE-2024-8011?
To fix CVE-2024-8011, update Logitech Options+ to version 1.72 or later.
3
Who is affected by CVE-2024-8011?
CVE-2024-8011 affects users of Logitech Options+ on MacOS prior to version 1.72.
4
What type of attack does CVE-2024-8011 enable?
CVE-2024-8011 enables local attackers to inject dynamic libraries into the Options+ runtime.
5
Can CVE-2024-8011 compromise user permissions?
Yes, CVE-2024-8011 can allow attackers to abuse permissions granted to Options+, such as access to the camera.