Heap-Based Buffer Overflow in MicroPython Function
CVE-2024-8948
7.5HIGH
What is CVE-2024-8948?
A vulnerability has been identified in MicroPython version 1.23.0, specifically within the mpz_as_bytes function located in py/objint.c. This issue enables a potential attacker to execute a heap-based buffer overflow when converting an integer zero to bytes. The vulnerability can be exploited remotely, posing significant risks if left unaddressed. Immediate application of the patch identified as 908ab1ceca15ee6fd0ef82ca4cba770a3ec41894 is advisable to mitigate any threats associated with this flaw.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
