CVE-2021-33597 LOW

CVE-2021-33597: Denial-of-Service (DoS) Vulnerability

Vendor F-Secure
Product F-Secure endpoint protection products on Windows, Mac and Linux Security
Published August 5, 2021
Last update August 3, 2024

CVSS base score

3.5/10
Attack vector Network
Attack complexity Low
Privileges required Low
User interaction Required
Confidentiality Low
Integrity None

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N

What the vulnerability does

01Description

A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the SAVAPI component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine.

Key dates

02Disclosure timeline

August 5, 2021 CVE published
August 3, 2024 Record updated