CVE-2015-4290: Buffer Overflow
Published Jul 29, 2015
·Updated
The kernel extension in Cisco AnyConnect Secure Mobility Client 4.0(2049) on OS X allows local users to cause a denial of service (panic) via vectors involving contiguous memory locations, aka Bug ID CSCut12255.
Affected Software
2 affected components
cisco AnyConnect Secure Mobility Client=4.0\(2049\)
Apple iOS and macOS
Event History
Jul 29, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4290?
CVE-2015-4290 has a medium severity rating due to its potential to cause a denial of service.
2
How do I fix CVE-2015-4290?
To fix CVE-2015-4290, update Cisco AnyConnect Secure Mobility Client to the latest version provided by Cisco.
3
Which versions of Cisco AnyConnect Secure Mobility Client are affected by CVE-2015-4290?
CVE-2015-4290 specifically affects Cisco AnyConnect Secure Mobility Client version 4.0(2049).
4
What operating system is impacted by CVE-2015-4290?
CVE-2015-4290 impacts the OS X operating system, particularly macOS Yosemite.
5
What type of vulnerability is CVE-2015-4290?
CVE-2015-4290 is classified as a denial of service vulnerability in the Cisco AnyConnect Secure Mobility Client.