Description
Certain WithSecure products allow a Denial of Service because the engine scanner can go into an infinite loop when processing an archive file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, WithSecure Linux Security 64 12.0, WithSecure Linux Protection 12.0, and WithSecure Atlant 1.0.35-1.
Published: 2024-02-25
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 26 Feb 2026 19:15:00 +0000

Type Values Removed Values Added
First Time appeared F-secure
F-secure email And Server Security
Withsecure
Withsecure atlant
Withsecure client Security
Withsecure elements Endpoint Protection
Withsecure linux Protection
Withsecure linux Security 64
Withsecure server Security
CPEs cpe:2.3:a:f-secure:email_and_server_security:15.00:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:atlant:1.0.35-1:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:client_security:15:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:elements_endpoint_protection:17.0:*:*:*:*:macos:*:*
cpe:2.3:a:withsecure:elements_endpoint_protection:17:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:linux_protection:12.0:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:linux_security_64:12.0:*:*:*:*:*:*:*
cpe:2.3:a:withsecure:server_security:15:*:*:*:*:*:*:*
Vendors & Products F-secure
F-secure email And Server Security
Withsecure
Withsecure atlant
Withsecure client Security
Withsecure elements Endpoint Protection
Withsecure linux Protection
Withsecure linux Security 64
Withsecure server Security
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

F-secure Email And Server Security
Withsecure Atlant Client Security Elements Endpoint Protection Linux Protection Linux Security 64 Server Security
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T18:01:32.049Z

Reserved: 2024-02-25T00:00:00.000Z

Link: CVE-2024-27359

cve-icon Vulnrichment

Updated: 2024-08-02T00:34:51.998Z

cve-icon NVD

Status : Deferred

Published: 2024-02-26T16:28:00.377

Modified: 2026-04-15T00:35:42.020

Link: CVE-2024-27359

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses