Certain WithSecure products allow Local privilege escalation via the lhz archive unpack handler. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1.
References
Link | Resource |
---|---|
https://www.withsecure.com/en/support/security-advisories | Vendor Advisory |
https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn4 | Broken Link |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
History
25 Sep 2024, 14:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-269 |
26 Sep 2023, 14:51
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://www.withsecure.com/en/support/security-advisories - Vendor Advisory | |
References | (MISC) https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn4 - Broken Link | |
CPE | cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:a:f-secure:linux_security_64:12.0:*:*:*:*:*:*:* cpe:2.3:a:f-secure:elements_endpoint_protection:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* cpe:2.3:a:f-secure:atlant:1.0.35-1:*:*:*:*:*:*:* cpe:2.3:a:f-secure:email_and_server_security:15.00:*:*:*:*:*:*:* cpe:2.3:a:f-secure:linux_protection:12.0:*:*:*:*:*:*:* cpe:2.3:a:f-secure:server_security:15.00:*:*:*:*:*:*:* cpe:2.3:a:f-secure:client_security:15.00:*:*:*:*:*:*:* |
|
First Time |
Microsoft
Linux F-secure elements Endpoint Protection Linux linux Kernel F-secure server Security F-secure linux Security 64 F-secure email And Server Security F-secure atlant Apple macos F-secure linux Protection Microsoft windows Apple F-secure client Security F-secure |
|
CWE | NVD-CWE-noinfo | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
22 Sep 2023, 05:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-22 05:15
Updated : 2024-09-25 14:35
NVD link : CVE-2023-43766
Mitre link : CVE-2023-43766
CVE.ORG link : CVE-2023-43766
JSON object : View
Products Affected
f-secure
- atlant
- client_security
- linux_security_64
- elements_endpoint_protection
- linux_protection
- email_and_server_security
- server_security
apple
- macos
linux
- linux_kernel
microsoft
- windows
CWE