CVE-2023-42524: High severity withsecure client security vulnerability
Certain WithSecure products allow an infinite loop in a scanning engine via unspecified file types. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-42524.
Which products are affected by this vulnerability?
This vulnerability affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, and WithSecure Elements Endpoint Protection 17 and later.
What is the severity of CVE-2023-42524?
The severity of CVE-2023-42524 is high with a CVSS score of 7.5.
How can I fix CVE-2023-42524?
To fix CVE-2023-42524, it is recommended to update to the latest version of the affected WithSecure products.
Where can I find more information about this vulnerability?
More information about this vulnerability can be found on the WithSecure website at https://www.withsecure.com/en/support/security-advisories.