CVE-2023-47264

HIGH

Withsecure Client Security - Out-of-Bounds Read

Title source: rule
STIX 2.1

Description

Certain WithSecure products have a buffer over-read whereby processing certain fuzz file types may cause a denial of service (DoS). This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, WithSecure Linux Security 64 12.0, WithSecure Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 15 and later.

References (1)

Core 1

Scores

CVSS v3 7.5
EPSS 0.0015
EPSS Percentile 34.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-125
Status published
Products (8)
withsecure/atlant 1.0.35-1
withsecure/atlant 15.0
withsecure/client_security 15
withsecure/elements_endpoint_protection 17
withsecure/email_and_server_security 15
withsecure/linux_protection 12.0
withsecure/linux_security_64 12.0
withsecure/server_security 15
Published Nov 16, 2023
Tracked Since Feb 18, 2026