PT-2024-1413 · Fireeye · Fireeye Endpoint Security
Albert Sánchez Miñano
·
Published
2024-01-15
·
Updated
2024-01-19
·
CVE-2024-0316
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
FireEye Endpoint Security version 5.2.0.958244
Description
The issue is related to improper cleanup in exceptions thrown by FireEye Endpoint Security. This could allow an attacker to send multiple request packets to the
containment notify/preview parameter, potentially leading to a service outage. The vulnerability is associated with errors in pointer counting in the network subsystem, which could be exploited by a remote attacker to cause a denial of service using the Containment notify/preview parameter.Recommendations
For FireEye Endpoint Security version 5.2.0.958244, consider disabling access to the
containment notify/preview parameter as a temporary workaround until a patch is available. Restricting the use of this parameter can help minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability. Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Fireeye Endpoint Security