CVE-2021-37850: Denial of service in ESET for Mac products
Published Nov 8, 2021
·Updated
ESET was made aware of a vulnerability in its consumer and business products for macOS that enables a user logged on to the system to stop the ESET daemon, effectively disabling the protection of the ESET security product until a system reboot.
Affected Software
4 affected components
ESET Cyber Security Macos<=6.10.700
ESET Cyber Security Macos<=6.10.700
ESET Endpoint Antivirus Macos<=6.10.910.0
ESET Endpoint Security Macos<=6.10.910.0
Event History
Nov 8, 2021
CVE Published
via MITRE·01:35 PM
Data Sourced
via MITRE·01:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-37850?
CVE-2021-37850 has been rated as a medium severity vulnerability.
2
How do I fix CVE-2021-37850?
To fix CVE-2021-37850, update to the latest version of the affected ESET software.
3
What ESET products are affected by CVE-2021-37850?
CVE-2021-37850 affects ESET Cyber Security, ESET Cyber Security Pro, ESET Endpoint Antivirus, and ESET Endpoint Security, all for macOS.
4
Can CVE-2021-37850 be exploited locally?
Yes, CVE-2021-37850 can be exploited by a local user logged onto the system.
5
What happens if CVE-2021-37850 is exploited?
Exploitation of CVE-2021-37850 allows an unauthorized user to stop the ESET daemon, disabling the protection of the security product.