cisco-sa-clamav-css-Fn4QSZ: ClamAV Cascading Style Sheets Image Parsing Error Handling Denial of Service Vulnerability
A vulnerability in the HTML Cascading Style Sheets (CSS) module of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.This vulnerability is due to improper error handling when splitting UTF-8 strings. An attacker
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-clamav-css-Fn4QSZ?
The severity of cisco-sa-clamav-css-Fn4QSZ is categorized as medium with a score of 4.
How do I fix cisco-sa-clamav-css-Fn4QSZ?
To fix cisco-sa-clamav-css-Fn4QSZ, update Cisco ClamAV to the latest version provided by Cisco.
What type of vulnerability is cisco-sa-clamav-css-Fn4QSZ?
cisco-sa-clamav-css-Fn4QSZ is a denial of service (DoS) vulnerability related to improper error handling in the CSS module of ClamAV.
Who can exploit the cisco-sa-clamav-css-Fn4QSZ vulnerability?
An unauthenticated, remote attacker can exploit the cisco-sa-clamav-css-Fn4QSZ vulnerability to cause a DoS condition on an affected device.
What causes the cisco-sa-clamav-css-Fn4QSZ vulnerability?
The cisco-sa-clamav-css-Fn4QSZ vulnerability is caused by improper error handling when splitting UTF-8 strings in the ClamAV HTML CSS module.