VYPR
Medium severity6.7NVD Advisory· Published Apr 3, 2023· Updated Jun 17, 2026

CVE-2023-0977

CVE-2023-0977

Description

A heap-based overflow vulnerability in Trellix Agent (Windows and Linux) version 5.7.8 and earlier, allows a remote user to alter the page heap in the macmnsvc process memory block resulting in the service becoming unavailable.

Affected products

3
  • Trellix/Agentllm-create3 versions
    <=5.7.8+ 2 more
    • (no CPE)range: <=5.7.8
    • (no CPE)range: 5.7.8
    • cpe:2.3:a:trellix:agent:*:*:*:*:*:*:*:*range: <=5.7.8

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.