SB2024020841 - Denial of service in Cisco products using ClamAV
Published: February 8, 2024
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Heap-based buffer overflow (CVE-ID: CVE-2024-20290)
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error within the OLE2 file format parser. A remote attacker can pass specially crafted data to the application, trigger a heap-based buffer overflow and perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-clamav-hDffu6t
- https://github.com/Cisco-Talos/clamav-devel/releases/tag/clamav-1.0.5
- https://blog.clamav.net/2023/11/clamav-130-122-105-released.html
- https://github.com/Cisco-Talos/clamav-devel/releases/tag/clamav-1.2.2