CVE-2015-1462: Buffer Overflow
Published Feb 3, 2015
·Updated
ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted upx packer file, related to a "heap out of bounds condition."
Affected Software
3 affected components
Fedoraproject Fedora=20
Fedoraproject Fedora=21
clamav clamav<=0.98.5
Event History
Feb 3, 2015
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-1462?
CVE-2015-1462 has a medium severity due to the potential for remote attackers to exploit the heap out of bounds condition.
2
How do I fix CVE-2015-1462?
To fix CVE-2015-1462, upgrade ClamAV to version 0.98.6 or later.
3
What versions of ClamAV are affected by CVE-2015-1462?
CVE-2015-1462 affects ClamAV versions prior to 0.98.6.
4
What systems are impacted by CVE-2015-1462?
CVE-2015-1462 impacts Fedora 20 and Fedora 21 systems that are using affected versions of ClamAV.
5
What type of attack is associated with CVE-2015-1462?
CVE-2015-1462 is associated with remote attacks via crafted upx packer files.