CVE-2021-33598: Denial-of-Service (DoS) Vulnerability
Published Aug 23, 2021
·Updated
A Denial-of-Service (DoS) vulnerability was discovered in all versions of F-Secure Atlant whereby the SAVAPI component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine.
Affected Software
5 affected components
F-Secure Atlant
F-Secure Linux Security
F-Secure Elements Endpoint Protection
Apple macOS
Microsoft Windows
Remediation
Information
FIX: No user action is required. The required fix has been published through automatic update channel with Capricorn update 2021-08-10_07
Event History
Aug 23, 2021
CVE Published
via MITRE·11:02 AM
Data Sourced
via MITRE·11:02 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this Denial-of-Service (DoS) vulnerability?
The vulnerability ID is CVE-2021-33598.
2
What is the severity rating of CVE-2021-33598?
The severity rating of CVE-2021-33598 is medium with a value of 6.5.
3
Which software products are affected by CVE-2021-33598?
CVE-2021-33598 affects F-Secure Atlant, F-Secure Linux Security, and F-Secure Elements Endpoint Protection.
4
How can the DoS vulnerability be triggered?
The DoS vulnerability can be triggered remotely by an attacker.
5
What is the impact of a successful attack exploiting CVE-2021-33598?
A successful attack exploiting CVE-2021-33598 will result in Denial-of-Service (DoS).