CVE-2024-27359
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Certain WithSecure products allow a Denial of Service because the engine scanner can go into an infinite loop when processing an archive file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, WithSecure Linux Security 64 12.0, WithSecure Linux Protection 12.0, and WithSecure Atlant 1.0.35-1.
Ciertos productos WithSecure permiten una denegación de servicio porque el escáner del motor puede entrar en un bucle infinito al procesar un archivo comprimido. Esto afecta a WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 y posteriores, WithSecure Client Security para Mac 15, WithSecure Elements Endpoint Protection para Mac 17 y posteriores, WithSecure Linux Security 64 12.0, ConSecure Linux Protection 12.0 y conSecure Atlant 1.0.35-1.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2024-02-25 CVE Reserved
- 2024-02-25 CVE Published
- 2024-08-05 CVE Updated
- 2025-05-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop')
CAPEC
References (1)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
F-secure Search vendor "F-secure" | Email And Server Security Search vendor "F-secure" for product "Email And Server Security" | * | - |
Affected
| ||||||
Withsecure Search vendor "Withsecure" | Atlant Search vendor "Withsecure" for product "Atlant" | * | - |
Affected
| ||||||
Withsecure Search vendor "Withsecure" | Client Security Search vendor "Withsecure" for product "Client Security" | * | - |
Affected
| ||||||
Withsecure Search vendor "Withsecure" | Elements Endpoint Protection Search vendor "Withsecure" for product "Elements Endpoint Protection" | * | - |
Affected
| ||||||
Withsecure Search vendor "Withsecure" | Linux Protection Search vendor "Withsecure" for product "Linux Protection" | * | - |
Affected
| ||||||
Withsecure Search vendor "Withsecure" | Linux Security 64 Search vendor "Withsecure" for product "Linux Security 64" | * | - |
Affected
| ||||||
Withsecure Search vendor "Withsecure" | Server Security Search vendor "Withsecure" for product "Server Security" | * | - |
Affected
|