The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19, 3.11.7 and 4.2.1.
References
Link | Resource |
---|---|
https://advisories.stormshield.eu/2021-003/ | Broken Link Vendor Advisory |
https://blog.clamav.net/2021/02/clamav-01031-patch-release.html | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2021-03-19 15:15
Updated : 2022-07-01 12:02
NVD link : CVE-2021-27506
Mitre link : CVE-2021-27506
CVE.ORG link : CVE-2021-27506
JSON object : View
Products Affected
clamav
- clamav
netasq_project
- netasq
stormshield
- network_security
CWE