Memory Corruption Vulnerability in Objective Open CBOR Run-time by Objsys
CVE-2020-24753

9.8CRITICAL

What is CVE-2020-24753?

A memory corruption flaw exists in the Objective Open CBOR Run-time library, particularly affecting versions prior to the 2020-08-12 update. This vulnerability can be exploited through the cbor2json decoder, where attackers can input specially crafted Concise Binary Object Representation (CBOR) data. The vulnerability is due to an unhandled error during the decoding of CBOR Major Type 3 text strings, leading to potential use of uninitialized stack memory. Exploitation may lead to memory modification, resulting in crashes or allowing for heap corruption that could be manipulated for further exploits.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.