CVE-2023-43766: High severity withsecure linux protection vulnerability
Certain WithSecure products allow Local privilege escalation via the lhz archive unpack handler. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1.
Affected Software
Event History
Frequently Asked Questions
Which products are affected by CVE-2023-43766?
WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac
How can an attacker exploit CVE-2023-43766?
An attacker can exploit this vulnerability to escalate their privileges locally through the lhz archive unpack handler in certain WithSecure products.
What is the severity level of CVE-2023-43766?
The severity level of CVE-2023-43766 is high (7.8).
Where can I find more information about CVE-2023-43766?
You can find more information about CVE-2023-43766 on the WithSecure website: [link](https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn4).
How do I fix CVE-2023-43766?
To fix CVE-2023-43766, install the latest security updates provided by WithSecure.