First published: Wed Aug 21 2019(Updated: )
Buffer overflow in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.2.8 allows local user to cause the Windows operating system to "blue screen" via an encrypted message sent to DLPe which when decrypted results in DLPe reading unallocated memory.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Data Loss Prevention Endpoint | >=11.3.0<11.3.2.82 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-3634 is a vulnerability that allows a local user to cause the Windows operating system to "blue screen" by sending an encrypted message to McAfee Data Loss Prevention (DLPe) for Windows, which results in DLPe reading unallocated memory.
The severity of CVE-2019-3634 is rated as medium with a severity value of 5.5.
CVE-2019-3634 affects McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.2.8.
A local user can exploit CVE-2019-3634 by sending an encrypted message to McAfee Data Loss Prevention (DLPe) for Windows, which causes the Windows operating system to crash.
You can find more information about CVE-2019-3634 at the following link: [McAfee Knowledge Center](https://kc.mcafee.com/corporate/index?page=content&id=SB10295)