CVE-2015-1461: Buffer Overflow
Published Feb 3, 2015
·Updated
ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted (1) Yoda's crypter or (2) mew packer file, related to a "heap out of bounds condition."
Affected Software
3 affected components
Fedoraproject Fedora=20
Fedoraproject Fedora=21
clamav clamav<=0.98.5
Event History
Feb 3, 2015
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-1461?
CVE-2015-1461 has been rated as a medium severity vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2015-1461?
To fix CVE-2015-1461, update ClamAV to version 0.98.6 or later, as this version contains the necessary patches.
3
Which versions of ClamAV are affected by CVE-2015-1461?
CVE-2015-1461 affects all ClamAV versions prior to 0.98.6.
4
What type of vulnerability is CVE-2015-1461?
CVE-2015-1461 is a heap out of bounds vulnerability that allows remote attackers to exploit the system.
5
Does CVE-2015-1461 affect specific operating systems?
Yes, CVE-2015-1461 affects Fedora 20 and 21 when running vulnerable versions of ClamAV.