PT-2024-12846 · Unknown · Artpwriter

Published

2023-11-01

·

Updated

2024-12-13

·

CVE-2023-40107

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ARTPWriter (affected versions not specified)
Description The issue is related to a possible use after free due to uninitialized data in ARTPWriter of ARTPWriter.cpp. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Use After Free

Weakness Enumeration

Related Identifiers

ASB-A-287298721
CVE-2023-40107

Affected Products

Artpwriter