CVE-2024-58366

Summary

SurrealDB before 1.1.1 contains a format string vulnerability in the rquickjs Exception::throw_type function when scripting is enabled. Attackers with scripting privileges can supply format string sequences in error inputs to read arbitrary memory or execute code with SurrealDB process privileges.

Affected Software

VendorProductVersion RangeStatus
surrealdbsurrealdb0 < 1.1.1affected
surrealdbsurrealdb1.1.1unaffected
surrealdbsurrealdb0 < 0.4.2affected
surrealdbsurrealdb0.4.2unaffected

Weaknesses

  • CWE-134: Use of Externally-Controlled Format String

References