AUGUST 30, 2026
Live Feed
Back to database
Case File

CVE-2023-29146

HIGH · CVSS 8.2 EPSS 0.12%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-06-09 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.2. It affects Linux.

CVE
CVE-2023-29146
Severity
HIGH
CVSS
8.2
EPSS
0.12%
Linux

Original NVD Description

The utility functions used by Malwarebytes EDR 1.0.11 on Linux for calculating a cryptographic hash of data bytes truncate the hashed data if it exceeds 4GB. This leads to an integer wrap-around if the data is larger than the maximum unsigned integer value (32-bit). Attackers could create a colliding hash value for two different strings by attaching 4GB of data to a string that is less than 4GB in size.