CVE-2023-1388: Buffer Overflow
Published Jun 7, 2023
·Updated
A heap-based overflow vulnerability in TA prior to version 5.7.9 allows a remote user to alter the page heap in the macmnsvc process memory block, resulting in the service becoming unavailable.
Affected Software
1 affected component
Trellix Agent<5.7.9
Event History
Jun 7, 2023
CVE Published
via MITRE·07:32 AM
Data Sourced
via MITRE·07:32 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this heap-based overflow vulnerability?
The vulnerability ID for this heap-based overflow vulnerability is CVE-2023-1388.
2
What is the severity rating of CVE-2023-1388?
The severity rating of CVE-2023-1388 is 8.1 (high).
3
What software is affected by CVE-2023-1388?
The Trellix Agent software version prior to 5.7.9 is affected by CVE-2023-1388.
4
How can a remote user exploit CVE-2023-1388?
A remote user can exploit CVE-2023-1388 by altering the page heap in the macmnsvc process memory block.
5
What is the impact of the vulnerability CVE-2023-1388?
The impact of the vulnerability CVE-2023-1388 is that it can cause the service to become unavailable.