CVE-2024-45752

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
19/09/2024
Last modified:
25/09/2024

Description

logiops through 0.3.4, in its default configuration, allows any unprivileged user to configure its logid daemon via an unrestricted D-Bus service, including setting malicious keyboard macros. This allows for privilege escalation with minimal user interaction.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pixlone:logiops:*:*:*:*:*:*:*:* 0.3.4 (including)