CNNVD-202508-1720 Information

CNNVD ID

CNNVD-202508-1720

CVE-2023-43687

  • CNNVD Published: 2025-08-14

Description (Chinese)

Malwarebytes是美国Malwarebytes公司的一款可为设备提供反恶意软件功能的应用软件。该软件旨在抵御病毒、间谍软件、特洛伊木马、蠕虫、拨号程序等恶意软件。 Malwarebytes 4.6.14.326之前版本和5.1.5.116之前版本存在安全漏洞,该漏洞源于文件验证和执行间缺乏锁导致竞争条件,可能执行任意代码。

Description (English)

Malwarebytes is an application of the United States firm Malwarebytes that provides anti-malware functionality for equipment. The software is designed to counter malicious software such as viruses, spy software, Trojan horses, worms, dial-up programs, etc. There is a security loophole in the previous editions 4.6.14.326 and 5.1.5116, which stems from competitive conditions resulting from the lack of locks between document validation and implementation, and the possible enforcement of arbitrary codes.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Malwarebytes

Published

2025-08-14

Last Modified

2026-02-24

References

https://www.malwarebytes.com/secure/cves/cve-2023-43687 https://nvd.nist.gov/vuln/detail/CVE-2023-43687

Patch

https://www.malwarebytes.com/secure/cves/cve-2023-43683

Share on: