Risk | Low |
Patch available | YES |
Number of vulnerabilities | 1 |
CVE-ID | CVE-2021-37850 |
CWE-ID | CWE-404 |
Exploitation vector | Local |
Public exploit | Public exploit code for vulnerability #1 is available. |
Vulnerable software Subscribe |
ESET Cyber Security Client/Desktop applications / Antivirus software/Personal firewalls ESET Cyber Security Pro Client/Desktop applications / Antivirus software/Personal firewalls ESET Endpoint Antivirus for macOS Client/Desktop applications / Antivirus software/Personal firewalls ESET Endpoint Security for macOS Client/Desktop applications / Antivirus software/Personal firewalls |
Vendor | Eset |
This security bulletin contains one low risk vulnerability.
EUVDB-ID: #VU57780
Risk: Low
CVSSv3.1:
CVE-ID: CVE-2021-37850
CWE-ID:
CWE-404 - Improper Resource Shutdown or Release
Exploit availability: Yes
DescriptionThe vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper resource shutdown or release. A local user can cause a denial of service condition on the target system.
MitigationInstall updates from vendor's website.
Vulnerable software versionsESET Cyber Security: 6.10.700
ESET Cyber Security Pro: 6.10.700
ESET Endpoint Antivirus for macOS: 6.10.910.0
ESET Endpoint Security for macOS: 6.10.910.0
http://jvn.jp/en/jp/JVN60553023/index.html
http://support.eset.com/en/ca8151-denial-of-service-vulnerability-in-eset-products-for-macos-fixed
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?