5.3

CVE-2021-40837

A vulnerability affecting F-Secure antivirus engine before Capricorn update 2022-02-01_01 was discovered whereby decompression of ACE file causes the scanner service to stop. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.

Data is provided by the National Vulnerability Database (NVD)
F-secureAtlant Version < 2022-02-01_01
F-secureInternet Gatekeeper Version < 2022-02-01_01
F-secureLinux Security Version < 2022-02-01_01
F-secureSecurity Cloud Version < 2022-02-01_01
F-secureElements Endpoint Detection And Response Version < 2022-02-01_01
   ApplemacOS Version-
   MicrosoftWindows Version-
F-secureElements Endpoint Protection Version < 2022-02-01_01
   ApplemacOS Version-
   MicrosoftWindows Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.25% 0.459
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
cve-notifications-us@f-secure.com 4.6 2.1 2.5
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:L