First published: Tue Mar 14 2017(Updated: )
Sandbox detection evasion vulnerability in hardware appliances in McAfee (now Intel Security) Advanced Threat Defense (MATD) 3.4.2.32 and earlier allows attackers to detect the sandbox environment, then bypass proper malware detection resulting in failure to detect a malware file (false-negative) via specially crafted malware.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Advanced Threat Defense | <=3.4.2.32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8986 is considered a high severity vulnerability due to its potential to allow attackers to bypass malware detection.
To mitigate CVE-2015-8986, update McAfee Advanced Threat Defense to the latest version beyond 3.4.2.32.
CVE-2015-8986 affects McAfee Advanced Threat Defense versions 3.4.2.32 and earlier.
The impact of CVE-2015-8986 is that it allows malware to evade detection in sandbox environments, leading to potential security breaches.
Organizations using McAfee Advanced Threat Defense version 3.4.2.32 and earlier are at risk due to CVE-2015-8986.