mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-30 18:56:19 +00:00
23 lines
1.3 KiB
Markdown
23 lines
1.3 KiB
Markdown
### [CVE-2021-40837](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-40837)
|
|
%2C%20F-Secure%20Linux%20Security%2064%2C%20F-Secure%20Atlant%2C%20F-Secure%20Internet%20Gatekeeper%20%26%20F-Secure%20Security%20Cloud&color=blue)
|
|

|
|

|
|
|
|
### Description
|
|
|
|
A vulnerability affecting F-Secure antivirus engine before Capricorn update 2022-02-01_01 was discovered whereby decompression of ACE file causes the scanner service to stop. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://www.f-secure.com/en/business/support-and-downloads/security-advisories
|
|
|
|
#### Github
|
|
- https://github.com/ARPSyndicate/cvemon
|
|
- https://github.com/Team-BT5/WinAFL-RDP
|
|
- https://github.com/bacon-tomato-spaghetti/WinAFL-RDP
|
|
- https://github.com/googleprojectzero/winafl
|
|
- https://github.com/ssumachai/CS182-Project
|
|
- https://github.com/yrime/WinAflCustomMutate
|
|
|