CVE-2025-26790: Low severity WithSecure Web security/Antivirus engine (Capricorn engine) vulnerability

Published Sep 14, 2026
·
Updated

Withsecure Atlant with Capricorn engine before 2025-01-2002 allows a Remote Denial of Service via an out-of-bounds memory read during processing of a document file by the antivirus engine.

Affected Software

1 affected component
WithSecure Web security/Antivirus engine (Capricorn engine)<2025-01-20_02

Event History

Sep 14, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness

Frequently Asked Questions

1

What conditions are required for exploitation?

An attacker would need to cause the Capricorn antivirus engine to process a crafted document file. The vector is network-accessible, requires no privileges or user interaction, but has high attack complexity.

2

What is the practical impact?

Successful exploitation can cause a remote denial of service through an out-of-bounds memory read. The supplied metrics indicate no confidentiality or integrity impact, with availability impact limited to low.

3

Which deployments are affected?

Deployments using the WithSecure Web Security/Antivirus Capricorn engine before 2025-01-20_02 are affected. The provided information does not state whether the vulnerable engine is enabled in default configurations.

4

How can I determine whether remediation is needed?

Check the installed Capricorn engine version or update level. Systems running a version before 2025-01-20_02 require remediation; the provided data does not identify a workaround when updating is not immediately possible.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203