First published: Tue Feb 03 2015(Updated: )
ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted (1) Yoda's crypter or (2) mew packer file, related to a "heap out of bounds condition."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fedora | =20 | |
Fedora | =21 | |
ClamAV | <=0.98.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1461 has been rated as a medium severity vulnerability due to the potential for remote code execution.
To fix CVE-2015-1461, update ClamAV to version 0.98.6 or later, as this version contains the necessary patches.
CVE-2015-1461 affects all ClamAV versions prior to 0.98.6.
CVE-2015-1461 is a heap out of bounds vulnerability that allows remote attackers to exploit the system.
Yes, CVE-2015-1461 affects Fedora 20 and 21 when running vulnerable versions of ClamAV.