CVE-2023-29146: Integer Overflow

Published Jun 9, 2026
·
Updated

The utility functions used by Malwarebytes EDR 1.0.11 on Linux for calculating a cryptographic hash of data bytes truncate the hashed data if it exceeds 4GB. This leads to an integer wrap-around if the data is larger than the maximum unsigned integer value (32-bit). Attackers could create a colliding hash value for two different strings by attaching 4GB of data to a string that is less than 4GB in size.

Affected Software

1 affected component
Malwarebytes Malwarebytes EDR=1.0.11

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Remove

    Remove Malwarebytes EDR 1.0.11 from your environment.

    Uninstall Malwarebytes EDR 1.0.11 on Linux or remove/disable the vulnerable component until an official patch is released.

  2. Compensating control

    Prevent the product from processing or hashing inputs of 4 GB or larger. Implement controls to reject/quarantine or block ingestion of files >=4GB from untrusted sources (network/file shares/agents), or isolate systems that may receive such large files, until a vendor fix is available.

Event History

Jun 9, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:16 PM
DescriptionSeverityWeakness
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2023-29146?

The severity of CVE-2023-29146 is classified as high with a CVSS score of 8.2.

2

How do I fix CVE-2023-29146?

To fix CVE-2023-29146, you should update Malwarebytes EDR to the latest version where the vulnerability is resolved.

3

What type of vulnerability is CVE-2023-29146?

CVE-2023-29146 is an integer overflow vulnerability affecting the cryptographic hash calculations in Malwarebytes EDR.

4

What impact can CVE-2023-29146 have on my system?

CVE-2023-29146 can allow attackers to create collisions in hash values, potentially leading to security breaches.

5

Which software is affected by CVE-2023-29146?

CVE-2023-29146 affects Malwarebytes EDR version 1.0.11 on Linux.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203