Vulnerability Details CVE-2023-0977
A heap-based overflow vulnerability in Trellix Agent (Windows and Linux) version 5.7.8 and earlier, allows a remote user to alter the page heap in the macmnsvc process memory block resulting in the service becoming unavailable.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 50.2%
CVSS Severity
CVSS v3 Score 6.7
Products affected by CVE-2023-0977
-
cpe:2.3:a:trellix:agent:-
-
cpe:2.3:a:trellix:agent:5.7.7
-
cpe:2.3:a:trellix:agent:5.7.8
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-