back to article Open source programming language R patches gnarly arbitrary code exec flaw

The open source R programming language – popular among statisticians and data scientists for performing visualization, machine learning, and suchlike – has patched an arbitrary code execution hole that scored a preliminary CVSS severity rating of 8.8 out of 10. The vulnerability, tagged CVE-2024-27322, can be exploited by …

  1. Anonymous Coward
    Boffin

    R-bitrary code execution: vulnerability in R’s deserialization

    Summary: “HiddenLayer researchers have discovered a vulnerability, CVE-2024-27322, in the R programming language that allows for arbitrary code execution by deserializing untrusted data”

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like