CVE-2023-42520

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Sep 18, 2023
Updated: Sep 21, 2023
CWE ID 400

Summary

CVE-2023-42520 is a vulnerability affecting multiple WithSecure products, including WithSecure Client Security, Server Security, Email and Server Security, Elements Endpoint Protection, Client Security for Mac, Elements Endpoint Protection for Mac, Linux Security 64, Linux Protection, and WithSecure Atlant (formerly F-Secure Atlant). This issue allows a remote attacker to cause a scanning engine to crash by unpacking specially crafted data files. WithSecure has identified the affected versions of these products, and users are advised to update to the latest patches to mitigate this risk. Successful exploitation of this vulnerability could lead to denial of service or potential unauthorized access to affected systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share