A vulnerability affecting F-Secure antivirus engine before Capricorn update 2022-02-01_01 was discovered whereby decompression of ACE file causes the scanner service to stop. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.

Project Subscriptions

Vendors Products
F-secure Subscribe
Elements Endpoint Detection And Response Subscribe
Elements Endpoint Protection Subscribe
Internet Gatekeeper Subscribe
Linux Security Subscribe
Security Cloud Subscribe
Microsoft Subscribe
Windows Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-27994 A vulnerability affecting F-Secure antivirus engine before Capricorn update 2022-02-01_01 was discovered whereby decompression of ACE file causes the scanner service to stop. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.
Fixes

Solution

FIX: No User action is required. The required fix has been published through automatic update channel with Capricorn update 2022-02-01_01


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: F-SecureUS

Published:

Updated: 2024-08-04T02:51:07.508Z

Reserved: 2021-09-09T00:00:00

Link: CVE-2021-40837

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-09T13:15:08.527

Modified: 2024-11-21T06:24:53.560

Link: CVE-2021-40837

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses