PT-2025-2957 · Qualisys · Qualisys C++ Sdk

Cktii

·

Published

2025-01-31

·

Updated

2025-01-31

·

CVE-2024-53320

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qualisys C++ SDK version a32a21a
Description The issue concerns multiple stack buffer overflows that can occur through the GetCurrentFrame, SaveCapture, and LoadProject functions. This can potentially lead to exploitation, although specific details about the estimated number of affected devices or real-world incidents are not provided.
Recommendations For Qualisys C++ SDK version a32a21a, consider disabling the GetCurrentFrame, SaveCapture, and LoadProject functions as a temporary workaround until a patch is available. Restrict access to these functions to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2024-53320

Affected Products

Qualisys C++ Sdk