CVE-2013-3627: Medium severity mcafee agent vulnerability
FrameworkService.exe in McAfee Framework Service in McAfee Managed Agent (MA) before 4.5.0.1927 and 4.6 before 4.6.0.3258 allows remote attackers to cause a denial of service (service crash) via a malformed HTTP request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3627?
CVE-2013-3627 is classified as a denial of service vulnerability that can potentially crash the McAfee Framework Service.
How do I fix CVE-2013-3627?
To address CVE-2013-3627, upgrade the McAfee Managed Agent to version 4.5.0.1927 or later, or version 4.6.0.3258 or later.
Which versions of McAfee Managed Agent are affected by CVE-2013-3627?
CVE-2013-3627 affects McAfee Managed Agent versions prior to 4.5.0.1927 and 4.6 before 4.6.0.3258.
What types of attacks can exploit CVE-2013-3627?
CVE-2013-3627 can be exploited by remote attackers sending malformed HTTP requests that lead to a denial of service.
Is it safe to use McAfee Managed Agent versions before the patch for CVE-2013-3627?
Using McAfee Managed Agent versions prior to the patch for CVE-2013-3627 poses a security risk as they are vulnerable to denial of service attacks.