CVE-2023-35767: Unauthenticated Remote Denial-of-Service via Shutdown Function in Helix Core
Published Nov 8, 2023
·Updated
In Helix Core versions prior to 2023.2, an unauthenticated remote Denial of Service (DoS) via the shutdown function was identified. Reported by Jason Geffner.
Affected Software
2 affected components
Perforce Helix Core<2023.2
Perforce Helix Core Server=2023.1/2513900
Event History
Nov 8, 2023
CVE Published
via MITRE·03:31 PM
Data Sourced
via MITRE·03:31 PM
DescriptionSeverityWeakness
Dec 19, 2023
News Published
07:57 PM
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is CVE-2023-35767?
CVE-2023-35767 is a vulnerability in Helix Core that allows an unauthenticated remote Denial of Service (DoS) via the shutdown function.
2
How severe is CVE-2023-35767?
CVE-2023-35767 has a severity rating of 7.5 (high).
3
Which versions of Helix Core are affected by CVE-2023-35767?
Helix Core versions prior to 2023.2 are affected by CVE-2023-35767.
4
How can I fix CVE-2023-35767?
To fix CVE-2023-35767, upgrade to Helix Core 2023.2 or later.
5
Where can I find more information about CVE-2023-35767?
You can find more information about CVE-2023-35767 on the Perforce website.