CVE-2023-42524

Certain WithSecure products allow an infinite loop in a scanning engine via unspecified file types. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:withsecure:client_security:15:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:elements_endpoint_protection:*:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:email_and_server_security:15:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:server_security:15:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:a:withsecure:client_security:15:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:elements_endpoint_protection:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:a:withsecure:linux_protection:12.0:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:linux_security_64:12.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

Configuration 4 (hide)

cpe:2.3:a:withsecure:atlant:1.0.35-1:*:*:*:*:*:*:*

History

21 Nov 2024, 08:22

Type Values Removed Values Added
References () https://www.withsecure.com/en/support/security-advisories - Vendor Advisory () https://www.withsecure.com/en/support/security-advisories - Vendor Advisory

22 Sep 2023, 00:53

Type Values Removed Values Added
CPE cpe:2.3:a:withsecure:linux_security_64:12.0:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:atlant:1.0.35-1:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:email_and_server_security:15:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:linux_protection:12.0:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:elements_endpoint_protection:*:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:client_security:15:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:server_security:15:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
First Time Linux linux Kernel
Apple macos
Linux
Microsoft windows
Microsoft
Withsecure
Withsecure client Security
Withsecure server Security
Withsecure email And Server Security
Withsecure elements Endpoint Protection
Withsecure linux Security 64
Apple
Withsecure linux Protection
Withsecure atlant
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
References (MISC) https://www.withsecure.com/en/support/security-advisories - (MISC) https://www.withsecure.com/en/support/security-advisories - Vendor Advisory
CWE CWE-835

18 Sep 2023, 13:26

Type Values Removed Values Added
New CVE

Information

Published : 2023-09-18 07:15

Updated : 2024-11-21 08:22


NVD link : CVE-2023-42524

Mitre link : CVE-2023-42524

CVE.ORG link : CVE-2023-42524


JSON object : View

Products Affected

withsecure

  • server_security
  • email_and_server_security
  • linux_security_64
  • elements_endpoint_protection
  • atlant
  • client_security
  • linux_protection

microsoft

  • windows

linux

  • linux_kernel

apple

  • macos
CWE
CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')