CVE-2023-39341 Details
Description
"FFRI yarai", "FFRI yarai Home and Business Edition" and their OEM products handle exceptional conditions improperly, which may lead to denial-of-service (DoS) condition. Affected products and versions are as follows: FFRI yarai versions 3.4.0 to 3.4.6 and 3.5.0, FFRI yarai Home and Business Edition version 1.4.0, InfoTrace Mark II Malware Protection (Mark II Zerona) versions 3.0.1 to 3.2.2, Zerona / Zerona PLUS versions 3.2.32 to 3.2.36, ActSecure χ versions 3.4.0 to 3.4.6 and 3.5.0, Dual Safe Powered by FFRI yarai version 1.4.1, EDR Plus Pack (Bundled FFRI yarai versions 3.4.0 to 3.4.6 and 3.5.0), and EDR Plus Pack Cloud (Bundled FFRI yarai versions 3.4.0 to 3.4.6 and 3.5.0).
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Oct 17, 2024References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://jvn.jp/en/jp/JVN42527152/ | CVE | Third Party Advisory |
| https://www.ffri.jp/security-info/index.htm | CVE | Vendor Advisory |
| https://www.skyseaclientview.net/news/230807_01/ | CVE | Third Party Advisory |
| https://www.soliton.co.jp/support/zerona_notice_2023.html | CVE | Third Party Advisory |
| https://www.sourcenext.com/support/i/2023/230718_01 | CVE | Third Party Advisory |
| https://www.support.nec.co.jp/View.aspx?id=3140109240 | CVE | Permissions Required |
| https://jvn.jp/en/jp/JVN42527152/ | [email protected] | Third Party Advisory |
| https://www.ffri.jp/security-info/index.htm | [email protected] | Vendor Advisory |
| https://www.skyseaclientview.net/news/230807_01/ | [email protected] | Third Party Advisory |
| https://www.soliton.co.jp/support/zerona_notice_2023.html | [email protected] | Third Party Advisory |
| https://www.sourcenext.com/support/i/2023/230718_01 | [email protected] | Third Party Advisory |
| https://www.support.nec.co.jp/View.aspx?id=3140109240 | [email protected] | Permissions Required |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-755 | Improper Handling of Exceptional Conditions | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| ffri dual safe | 1.4.1 |
CPE
Remediation
| |
| ffri ffri yarai | >= 3.4.0, <= 3.4.6 1.4.0 3.5.0 |
CPE
Remediation
| |
| soliton infotrace mark ii malware protection | >= 3.0.1, <= 3.2.2 |
CPE
Remediation
| |
| soliton zerona | >= 3.2.32, <= 3.2.36 |
CPE
Remediation
| |
| soliton zerona plus | >= 3.2.32, <= 3.2.36 |
CPE
Remediation
| |
| nec actsecure x managed security service | >= 3.4.0, <= 3.4.6 3.5.0 |
CPE
Remediation
| |
| skygroup edr plus pack | >= 3.4.0, <= 3.4.6 3.5.0 |
CPE
Remediation
| |
| skygroup edr plus pack cloud | >= 3.4.0, <= 3.4.6 3.5.0 |
CPE
Remediation
| |
Change History
6 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Nov 7, 2023 | CVE Modified | [email protected] |
| Aug 22, 2023 | Initial Analysis | [email protected] |