CVE-2021-27506

The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19, 3.11.7 and 4.2.1.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:netasq_project:netasq:*:*:*:*:*:*:*:*
cpe:2.3:a:stormshield:stormshield_network_security:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:clamav:clamav:*:*:*:*:*:*:*:*

History

21 Nov 2024, 05:58

Type Values Removed Values Added
References () https://advisories.stormshield.eu/2021-003/ - Broken Link, Vendor Advisory () https://advisories.stormshield.eu/2021-003/ - Broken Link, Vendor Advisory
References () https://blog.clamav.net/2021/02/clamav-01031-patch-release.html - Vendor Advisory () https://blog.clamav.net/2021/02/clamav-01031-patch-release.html - Vendor Advisory

20 Aug 2024, 14:58

Type Values Removed Values Added
CPE cpe:2.3:a:stormshield:network_security:*:*:*:*:*:*:*:* cpe:2.3:a:stormshield:stormshield_network_security:*:*:*:*:*:*:*:*
First Time Stormshield stormshield Network Security

Information

Published : 2021-03-19 15:15

Updated : 2024-11-21 05:58


NVD link : CVE-2021-27506

Mitre link : CVE-2021-27506

CVE.ORG link : CVE-2021-27506


JSON object : View

Products Affected

clamav

  • clamav

stormshield

  • stormshield_network_security

netasq_project

  • netasq