CVE-2015-2222: Medium severity ubuntu vulnerability
Published May 12, 2015
·Updated
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted petite packed file.
Affected Software
5 affected components
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=14.04
Canonical Ubuntu Linux=14.10
Canonical Ubuntu Linux=15.1
clamav clamav<=0.98.6
Remediation
Event History
May 12, 2015
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2222?
CVE-2015-2222 has been classified as a medium severity vulnerability due to its potential for causing denial of service.
2
How do I fix CVE-2015-2222?
To fix CVE-2015-2222, upgrade ClamAV to version 0.98.7 or later.
3
Which versions of ClamAV are affected by CVE-2015-2222?
CVE-2015-2222 affects ClamAV versions up to 0.98.6.
4
On which operating systems does CVE-2015-2222 affect users?
CVE-2015-2222 affects users of Ubuntu Linux versions 12.04, 14.04, 14.10, and 15.1.
5
Can CVE-2015-2222 lead to a system crash?
Yes, CVE-2015-2222 can allow remote attackers to exploit the vulnerability to cause a system crash.