Impact
Buffer overflow in SteelSeries GG on macOS version 107.0.0 allows an attacker to run arbitrary code through the libSSEdevice.dylib and CxAudioHidDevice::DeviceGetDescriptionString components. The flaw can compromise confidentiality, integrity and availability of the affected system.
Affected Systems
The vulnerability affects SteelSeries GG (macOS) version 107.0.0. Users should confirm the installed build and determine if they are running the affected client.
Risk and Exploitability
The EPSS score is not available and the vulnerability is not listed in CISA's KEV catalog. While it enables arbitrary code execution, the exact attack vector is not detailed; it likely requires interaction with the device library, suggesting a local or device‑based remote exploitation scenario. The risk is high if an attacker can trigger the library call.
OpenCVE Enrichment