PT-2023-19079 · Unknown · Openmage Lts

Mark-Netalico

·

Published

2023-01-27

·

Updated

2023-02-07

·

CVE-2023-23617

CVSS v3.1

4.9

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions OpenMage LTS versions prior to 19.4.22 OpenMage LTS versions prior to 20.0.19
Description The issue is related to an infinite loop in the malicious code filter under certain conditions. There are no known workarounds for this problem.
Recommendations For versions prior to 19.4.22, update to version 19.4.22 to resolve the issue. For versions prior to 20.0.19, update to version 20.0.19 to resolve the issue.

Exploit

Fix

Infinite Loop

Weakness Enumeration

Related Identifiers

CVE-2023-23617
GHSA-3P73-MM7V-4F6M

Affected Products

Openmage Lts