First published: Thu Dec 13 2018(Updated: )
Denial of Service through Resource Depletion vulnerability in the agent in non-Windows McAfee Agent (MA) 5.0.0 through 5.0.6, 5.5.0, and 5.5.1 allows local users to cause DoS, unexpected behavior, or potentially unauthorized code execution via knowledge of the internal trust mechanism.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Agent | >=5.0.0<=5.0.6 | |
Mcafee Agent | =5.5.0 | |
Mcafee Agent | =5.5.1 |
upgrade to McAfee Agent 5.6.0
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-6707 is a Denial of Service through Resource Depletion vulnerability in the agent in non-Windows McAfee Agent.
The severity level of CVE-2018-6707 is high.
CVE-2018-6707 allows local users to cause DoS, unexpected behavior, or potentially unauthorized code execution through the internal trust mechanism.
CVE-2018-6707 affects non-Windows McAfee Agent versions 5.0.0 through 5.0.6, 5.5.0, and 5.5.1.
To mitigate CVE-2018-6707, it is recommended to update non-Windows McAfee Agent to a version that is not affected by the vulnerability.