First published: Tue Feb 03 2015(Updated: )
ClamAV before 0.98.6 allows remote attackers to cause a denial of service (crash) via a crafted petite packer file, related to an "incorrect compiler optimization."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ClamAV | <=0.98.5 | |
Fedora | =20 | |
Fedora | =21 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1463 is classified as a denial of service vulnerability.
To fix CVE-2015-1463, upgrade ClamAV to version 0.98.6 or later.
ClamAV versions prior to 0.98.6, including version 0.98.5, are affected by CVE-2015-1463.
CVE-2015-1463 can be exploited by remote attackers to cause a crash by sending crafted petite packer files.
Yes, CVE-2015-1463 affects Fedora users running versions 20 and 21 with vulnerable ClamAV installations.