CVE-2023-42522
Published on: Not Yet Published
Last Modified on: 09/22/2023 12:49:00 AM UTC
Certain versions of Macos from Apple contain the following vulnerability:
Certain WithSecure products allow a remote crash of a scanning engine via processing of an import struct in a PE file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1.
- CVE-2023-42522 has been assigned by
[email protected] to track the vulnerability - currently rated as HIGH severity.
CVSS3 Score: 7.5 - HIGH
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | LOW | NONE | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | NONE | NONE | HIGH |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Security advisories | WithSecure™ | www.withsecure.com text/html |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Operating System | Apple | Macos | - | All | All | All |
Operating System | Linux | Linux Kernel | - | All | All | All |
Operating System | Microsoft | Windows | - | All | All | All |
Application | Withsecure | Atlant | 1.0.35-1 | All | All | All |
Application | Withsecure | Client Security | 15 | All | All | All |
Application | Withsecure | Elements Endpoint Protection | All | All | All | All |
Application | Withsecure | Email And Server Security | 15 | All | All | All |
Application | Withsecure | Linux Protection | 12.0 | All | All | All |
Application | Withsecure | Linux Security 64 | 12.0 | All | All | All |
Application | Withsecure | Server Security | 15 | All | All | All |
- cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*:
- cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*:
- cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*:
- cpe:2.3:a:withsecure:atlant:1.0.35-1:*:*:*:*:*:*:*:
- cpe:2.3:a:withsecure:client_security:15:*:*:*:*:*:*:*:
- cpe:2.3:a:withsecure:elements_endpoint_protection:*:*:*:*:*:*:*:*:
- cpe:2.3:a:withsecure:email_and_server_security:15:*:*:*:*:*:*:*:
- cpe:2.3:a:withsecure:linux_protection:12.0:*:*:*:*:*:*:*:
- cpe:2.3:a:withsecure:linux_security_64:12.0:*:*:*:*:*:*:*:
- cpe:2.3:a:withsecure:server_security:15:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE