CVE-2024-8258
2.0
Vector
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:X/RE:X/U:XShow more
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:X/RE:X/U:XShow less
Source: cve-coordination@logitech.com (Secondary)
Description
Improper Control of Generation of Code ('Code Injection') in Electron Fuses in Logitech Options Plus version 1.60.496306 on macOS allows attackers to execute arbitrary code via insecure Electron Fuses configuration.
Affected (1)
Products: Logitech: Logi Options+
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 1.60.496306 to 1.70.551909 |
| Running on/with | Platform Versions |
|---|---|
Apple Macos | All versions |
References (4)
Source: cve-coordination@logitech.com
ExploitThird Party Advisory
Timeline
No history available yet.