CVE-2023-29145: Malwarebytes Endpoint Detection And Response

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

The Malwarebytes EDR 1.0.11 for Linux driver doesn't properly ensure whitelisting of executable libraries loaded by executable files, allowing arbitrary code execution. The attacker can set LD_LIBRARY_PATH, set LD_PRELOAD, or run an executable file in a debugger.

Affected products

  • Malwarebytes Endpoint Detection And Response: up to and including 1.0.11
  • Malwarebytes Malwarebytes: up to and including 1.0.14

Published 2023-06-30. Last modified 2026-06-17.