Unauthenticated Remote Denial-of-Service via Buffer in Helix Core
CVE-2023-5759

7.5HIGH

Key Information:

Vendor

Helix

Vendor
CVE Published:
8 November 2023

Badges

đź“° News Worthy

What is CVE-2023-5759?

An unauthenticated remote Denial of Service (DoS) vulnerability has been discovered in Helix Core versions prior to 2023.2, which could allow attackers to disrupt service availability through specially crafted requests, leading to potential downtime. It is crucial for users and organizations employing Helix Core to apply the latest updates to safeguard against these threats.

Affected Version(s)

Helix Core 0.0.0 < 2023.2

Helix Core 0.0.0 < 2023.1 Patch 2

Helix Core 0.0.0 < 2022.2 Patch 3

News Articles

Microsoft: Multiple Perforce Server Flaws Allow for Network Takeover

The most critical of the bugs gives attackers privileged access to the local Windows system, paving the way for unauthenticated RCE and installing backdoors.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • đź“°

    First article discovered by Dark Reading

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2023-5759 : Unauthenticated Remote Denial-of-Service via Buffer in Helix Core