The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19, 3.11.7 and 4.2.1.
References
Link | Resource |
---|---|
https://advisories.stormshield.eu/2021-003/ | Broken Link Vendor Advisory |
https://blog.clamav.net/2021/02/clamav-01031-patch-release.html | Vendor Advisory |
https://advisories.stormshield.eu/2021-003/ | Broken Link Vendor Advisory |
https://blog.clamav.net/2021/02/clamav-01031-patch-release.html | Vendor Advisory |
Configurations
History
21 Nov 2024, 05:58
Type | Values Removed | Values Added |
---|---|---|
References | () https://advisories.stormshield.eu/2021-003/ - Broken Link, Vendor Advisory | |
References | () https://blog.clamav.net/2021/02/clamav-01031-patch-release.html - Vendor Advisory |
20 Aug 2024, 14:58
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:stormshield:stormshield_network_security:*:*:*:*:*:*:*:* | |
First Time |
Stormshield stormshield Network Security
|
Information
Published : 2021-03-19 15:15
Updated : 2024-11-21 05:58
NVD link : CVE-2021-27506
Mitre link : CVE-2021-27506
CVE.ORG link : CVE-2021-27506
JSON object : View
Products Affected
clamav
- clamav
stormshield
- stormshield_network_security
netasq_project
- netasq
CWE