Description

Process Explorer before 17.04 allows attackers to make it functionally unavailable (a denial of service for analysis) by renaming an executable file to a new extensionless 255-character name and launching it with NtCreateUserProcess. This can occur through an issue in wcscat_s error handling.

INFO

Published Date :

2024-05-07T00:00:00.000Z

Last Modified :

2025-03-26T20:47:52.918Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2023-42757 vulnerability.

No data.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact