Improper Control of Generation of Code ('Code Injection') in Electron Fuses in Logitech Options Plus version 1.60.496306 on macOS allows attackers to execute arbitrary code via insecure Electron Fuses configuration.
Metrics
Affected Vendors & Products
References
History
Fri, 27 Sep 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apple
Apple macos Logitech logi Options\+ |
|
CPEs | cpe:2.3:a:logitech:logi_options\+:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Apple
Apple macos Logitech logi Options\+ |
|
Metrics |
cvssV3_1
|
Tue, 10 Sep 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Logitech
Logitech options Plus |
|
CPEs | cpe:2.3:a:logitech:options_plus:*:*:*:*:*:*:*:* | |
Vendors & Products |
Logitech
Logitech options Plus |
|
Metrics |
ssvc
|
Tue, 10 Sep 2024 08:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Control of Generation of Code ('Code Injection') in Electron Fuses in Logitech Options Plus version 1.60.496306 on macOS allows attackers to execute arbitrary code via insecure Electron Fuses configuration. | |
Title | Insecure Electron Fuses in Logitech Options Plus Allowing Arbitrary Code Execution on macOS | |
Weaknesses | CWE-94 | |
References |
| |
Metrics |
cvssV4_0
|
MITRE
Status: PUBLISHED
Assigner: Logitech
Published: 2024-09-10T08:36:34.326Z
Updated: 2024-09-10T13:56:50.325Z
Reserved: 2024-08-28T08:47:03.078Z
Link: CVE-2024-8258
Vulnrichment
Updated: 2024-09-10T13:56:39.621Z
NVD
Status : Analyzed
Published: 2024-09-10T09:15:07.497
Modified: 2024-09-27T18:56:41.140
Link: CVE-2024-8258
Redhat
No data.