Stack Buffer Out-of-Bounds Access in Malwarebytes Products
CVE-2023-43683

6.5MEDIUM

Key Information:

Vendor
CVE Published:
14 August 2025

What is CVE-2023-43683?

A stack buffer out-of-bounds access vulnerability has been identified in Malwarebytes products, specifically versions 4.6.14.326 and earlier, as well as 5.1.5.116 and later, including Nebula from 2020-10-21 onwards. This issue arises from an integer underflow when processing newline characters, which can potentially lead to unauthorized memory access and disrupt the normal functioning of the software. It is crucial for users to update to the latest versions to mitigate the risk associated with this vulnerability.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.