CVE-2021-27506: Medium severity netasq vulnerability
The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19, 3.11.7 and 4.2.1.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-27506 vulnerability?
CVE-2021-27506 refers to a vulnerability in the ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) that can be exploited to cause a Denial of Service (DoS) when parsing malformed PNG files.
Which software versions are affected by CVE-2021-27506?
Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0 are affected by CVE-2021-27506.
How can CVE-2021-27506 be fixed?
CVE-2021-27506 can be fixed by upgrading to SNS versions 3.7.19, 3.11.7, or 4.2.1.
What is the severity of CVE-2021-27506?
CVE-2021-27506 has a severity rating of medium with a CVSS score of 5.5.
Where can I find more information about CVE-2021-27506?
More information about CVE-2021-27506 can be found at the following references: [1] [2].