PT-2024-1413 · Fireeye · Fireeye Endpoint Security

Albert Sánchez Miñano

·

Published

2024-01-15

·

Updated

2024-01-19

·

CVE-2024-0316

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions FireEye Endpoint Security version 5.2.0.958244
Description The issue is related to improper cleanup in exceptions thrown by FireEye Endpoint Security. This could allow an attacker to send multiple request packets to the containment notify/preview parameter, potentially leading to a service outage. The vulnerability is associated with errors in pointer counting in the network subsystem, which could be exploited by a remote attacker to cause a denial of service using the Containment notify/preview parameter.
Recommendations For FireEye Endpoint Security version 5.2.0.958244, consider disabling access to the containment notify/preview parameter as a temporary workaround until a patch is available. Restricting the use of this parameter can help minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2024-00885
CVE-2024-0316

Affected Products

Fireeye Endpoint Security