CVE-2024-31636

LOW3.9EPSS 0.10%

LIEF obtain sensitive information via the name parameter

Published: 5/3/2024Modified: 5/20/2026
Also known as:GHSA-377p-g8gr-5wpgPYSEC-2024-280

Description

An issue in LIEF v.0.14.1 allows a local attacker to obtain sensitive information via the name parameter of the machd_reader.c component.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1LOW3.9CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N

References (6)