Vulnerability Details CVE-2023-0977
A heap-based overflow vulnerability in Trellix Agent (Windows and Linux) version 5.7.8 and earlier, allows a remote user to alter the page heap in the macmnsvc process memory block resulting in the service becoming unavailable.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.6%
CVSS Severity
CVSS v3 Score 6.7
Products affected by CVE-2023-0977
-
cpe:2.3:a:trellix:agent:-
-
cpe:2.3:a:trellix:agent:5.7.7
-
cpe:2.3:a:trellix:agent:5.7.8
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-