Improper Encoding Handling in Elastic Defend for Windows Systems
CVE-2024-37284
5.5MEDIUM
What is CVE-2024-37284?
An improper handling of alternate encoding vulnerability exists in Elastic Defend on Windows systems when processing files or processes encoded as multibyte characters. This flaw can trigger an uncaught exception, causing Elastic Defend to crash. As a result, the system may fail to quarantine malicious files or terminate harmful processes, potentially compromising system security.
Affected Version(s)
Elastic Defend Windows 8.0.0 < 8.13.3