CVE-2016-1405: Buffer Overflow
Published Jun 8, 2016
·Updated
libclamav in ClamAV (aka Clam AntiVirus), as used in Advanced Malware Protection (AMP) on Cisco Email Security Appliance (ESA) devices before 9.7.0-125 and Web Security Appliance (WSA) devices before 9.0.1-135 and 9.1.x before 9.1.1-041, allows remote attackers to cause a denial of service (AMP process restart) via a crafted document, aka Bug IDs CSCuv78533 and CSCuw60503.
Affected Software
5 affected components
clamav clamav
Cisco Email Security Appliance=9.6.0-042
Cisco Web Security Appliance=8.8.0-085
Cisco Web Security Appliance=9.1.0-070
Cisco Web Security Appliance=9.5.0-284
Event History
Jun 8, 2016
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the impact of CVE-2016-1405?
The impact of CVE-2016-1405 is service disruption and potential downtime due to denial of service attacks.