← Back

CVE-2024-8258

nvd nist
Published: Sep 10, 2024Modified: Sep 27, 2024

JSON object

Loading...
2.0
Vector
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:X/RE:X/U:XShow less
Source: cve-coordination@logitech.com (Secondary)

Description

Improper Control of Generation of Code ('Code Injection') in Electron Fuses in Logitech Options Plus version 1.60.496306 on macOS allows attackers to execute arbitrary code via insecure Electron Fuses configuration.

Affected (1)

1 product
Logi Options+
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 1.60.496306 to 1.70.551909
Running on/withPlatform Versions
Apple
Macos
All versions

References (4)

Source: cve-coordination@logitech.com
ExploitThird Party Advisory
Source: cve-coordination@logitech.com
Not Applicable
Source: cve-coordination@logitech.com
Not Applicable
Source: cve-coordination@logitech.com
Product

Timeline

No history available yet.