CVE-2024-8258

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
10/09/2024
Last modified:
27/09/2024

Description

Improper Control of Generation of Code ('Code Injection') in Electron Fuses in Logitech Options Plus version 1.60.496306 on macOS allows attackers to execute arbitrary code via insecure Electron Fuses configuration.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:logitech:logi_options\+:*:*:*:*:*:*:*:* 1.60.496306 (including) 1.70.551909 (excluding)
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*