ESET Endpoint Antivirus
cpe:2.3:a:eset:endpoint_antivirus:*:*:*:*:linux:*:*, +1 more
- <= 13.1.3.0
- <= 13.0.3.0
- <= 12.2.8.0
- <= 12.1.1.0
- <= 12.0.13.0
A use-after-free vulnerability has been identified in ESET security products for Linux, including ESET Endpoint Antivirus for Linux and ESET Server Security for Linux. This vulnerability potentially allows an attacker to trigger a kernel panic, causing a denial-of-service condition on the system. The issue arises when an attacker exploits specific timing to access memory pages that are no longer in use, leading to a system crash.
Exploitation of this vulnerability causes a kernel panic, leading to a denial-of-service condition on the affected system.
ESET has released fixed versions of the affected products. Users are advised to upgrade to these versions. The fixed builds are available for download from the ESET website or via the ESET Repository. Specific version upgrade details can be found in the ESET Customer Advisory.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.