CVE-2014-5501: Buffer Overflow
Published Oct 7, 2014
·Updated
Stack-based buffer overflow in the diagnose service in the Sophos Cyberoam appliances with CyberoamOS before 10.6.1 GA allows remote attackers to execute arbitrary code via a crafted webpage or file.
Affected Software
2 affected components
Cyberoam Cyberoam Os<=10.4
Cyberoam Cyberoam Os<=10.6.1
Event History
Oct 7, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-5501?
CVE-2014-5501 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2014-5501?
To fix CVE-2014-5501, upgrade Sophos Cyberoam appliances to CyberoamOS version 10.6.1 GA or later.
3
Who is affected by CVE-2014-5501?
CVE-2014-5501 affects Sophos Cyberoam appliances running CyberoamOS versions prior to 10.6.1 GA.
4
What type of vulnerability is CVE-2014-5501?
CVE-2014-5501 is a stack-based buffer overflow vulnerability.
5
Can CVE-2014-5501 be exploited remotely?
Yes, CVE-2014-5501 can be exploited remotely through a crafted webpage or file.