The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19, 3.11.7 and 4.2.1.
References
Link | Resource |
---|---|
https://advisories.stormshield.eu/2021-003/ | Broken Link Vendor Advisory |
https://blog.clamav.net/2021/02/clamav-01031-patch-release.html | Vendor Advisory |
Information
Published : 2021-03-19 08:15
Updated : 2022-07-01 05:02
NVD link : CVE-2021-27506
Mitre link : CVE-2021-27506
JSON object : View
CWE
Products Affected
netasq_project
- netasq
stormshield
- network_security
clamav
- clamav