CVE-2023-43767

Certain WithSecure products allow Denial of Service via the aepack archive unpack handler. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:f-secure:linux_protection:12.0:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:linux_security_64:12.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:f-secure:atlant:1.0.35-1:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:a:f-secure:client_security:15.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:elements_endpoint_protection:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:email_and_server_security:15.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:server_security:15.00:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
OR cpe:2.3:a:f-secure:client_security:15.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:elements_endpoint_protection:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*

History

25 Sep 2024, 14:35

Type Values Removed Values Added
CWE CWE-400

26 Sep 2023, 14:51

Type Values Removed Values Added
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:linux_security_64:12.0:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:elements_endpoint_protection:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:atlant:1.0.35-1:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:email_and_server_security:15.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:linux_protection:12.0:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:server_security:15.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:client_security:15.00:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
First Time Microsoft
Linux
F-secure elements Endpoint Protection
Linux linux Kernel
F-secure server Security
F-secure linux Security 64
F-secure email And Server Security
F-secure atlant
Apple macos
F-secure linux Protection
Microsoft windows
Apple
F-secure client Security
F-secure
CWE NVD-CWE-noinfo
References (MISC) https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn3 - (MISC) https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn3 - Broken Link
References (MISC) https://www.withsecure.com/en/support/security-advisories - (MISC) https://www.withsecure.com/en/support/security-advisories - Vendor Advisory

22 Sep 2023, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-09-22 05:15

Updated : 2024-09-25 14:35


NVD link : CVE-2023-43767

Mitre link : CVE-2023-43767

CVE.ORG link : CVE-2023-43767


JSON object : View

Products Affected

f-secure

  • atlant
  • client_security
  • linux_security_64
  • elements_endpoint_protection
  • linux_protection
  • email_and_server_security
  • server_security

apple

  • macos

linux

  • linux_kernel

microsoft

  • windows
CWE
NVD-CWE-noinfo CWE-400

Uncontrolled Resource Consumption