PoC Index

CVE-2023-35679

MEDIUM 5.5EPSS 0.1%

In MtpPropertyValue of MtpProperty.h, there is a possible out of bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.

CVSS v3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS
0.10% chance of exploitation in the next 30 days, 1th percentile
Published
2023-09-11
Updated
2024-09-26

Proof-of-concept exploits (1)

References

Related