← back
CVE-2023-40632

CVE-2023-40632

EPSS 0.4%
In short

A flaw in the jpg driver allows attackers to access memory after it has been freed, potentially exposing sensitive information. No special permissions are needed to trigger this vulnerability.

Technical detail

Use-after-free vulnerability in the jpg driver caused by logic error in memory management. Remote attacker can trigger the flaw to read freed memory regions, resulting in information disclosure without requiring elevated privileges.

Summary generated and translated by AI from the official description.
In jpg driver, there is a possible use after free due to a logic error. This could lead to remote information disclosure no additional execution privileges needed

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →