Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-42522


Certain WithSecure products allow a remote crash of a scanning engine via processing of an import struct in a PE file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1.


Published

2023-09-18T07:15:37.880

Last Modified

2024-11-21T08:22:42.337

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-400

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application withsecure client_security 15 Yes
Application withsecure elements_endpoint_protection ≥ 17 Yes
Application withsecure email_and_server_security 15 Yes
Application withsecure server_security 15 Yes
Operating System microsoft windows - No
Application withsecure client_security 15 Yes
Application withsecure elements_endpoint_protection ≥ 17 Yes
Operating System apple macos - No
Application withsecure linux_protection 12.0 Yes
Application withsecure linux_security_64 12.0 Yes
Operating System linux linux_kernel - No
Application withsecure atlant 1.0.35-1 Yes

References