PT-2023-4578 · Wibu · Wibu Codemeter Runtime

Published

2023-08-16

·

Updated

2025-07-01

·

CVE-2023-3935

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Wibu CodeMeter Runtime versions up to 7.60b
Description The issue is related to a heap buffer overflow vulnerability in the Wibu CodeMeter Runtime network service. This vulnerability can be exploited by an unauthenticated, remote attacker to achieve remote code execution (RCE) and gain full access to the host system.
Recommendations For versions up to 7.60b, update to a version later than 7.60b to resolve the issue. At the moment, there is no information about additional mitigation measures for this specific vulnerability.

Fix

Memory Corruption

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-04985
CVE-2023-3935

Affected Products

Wibu Codemeter Runtime