First published: Fri Jun 30 2023(Updated: )
Malwarebytes Anti-Exploit 4.4.0.220 is vulnerable to arbitrary file deletion and denial of service via an ALPC message in which FullFileNamePath lacks a '\0' character.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Malwarebytes Anti-Exploit | <=4.4.0.220 | |
<=4.4.0.220 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27469 has been classified with a severity that indicates it poses risks of arbitrary file deletion and denial of service.
To fix CVE-2023-27469, update Malwarebytes Anti-Exploit to the latest version beyond 4.4.0.220.
CVE-2023-27469 affects all versions of Malwarebytes Anti-Exploit up to and including 4.4.0.220.
CVE-2023-27469 exploits a lack of a '\0' character in the FullFileNamePath of ALPC messages.
The potential impacts of CVE-2023-27469 include arbitrary file deletion and denial of service on systems running the affected version.