CVE-2024-47193

Denial-of-Service (DoS) Vulnerability

 

Status

Fixed

Risk level

Medium

Action required

FIX No User action is required. The required fix has been published through automatic update channel for Elements agent & MDR version 24.3

Please note : Action required : Admin must take action to upgrade to Client Security for Mac 16.01

Affected products

WithSecure Elements Agent for Mac version 24.2 & below

WithSecure MDR version 24.1 & below

WithSecure Business Client Security for Mac version 16.00

Platforms

All supported platforms for the affected products

Date issued

2024-11-29

More information

A denial-of-service (DoS) vulnerability was discovered in WithSecure Atlant Product. This issue was reported to WithSecure through the Vulnerability Reward Program. A crash was detected from Atlant when scanning a document file.

The exploit can be triggered remotely by an attacker. A successful attack will result in denial-of-service (DoS) of the antivirus engine.

 

Contributors

WithSecure would like to thank following person for bringing this issue to our attention.

Antti Levomäki & Christian Jalio from Forcepoint