A vulnerability in the GPT file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This vulnerability is due to improper handling of an endian conversion operation, which may result in an out-of-bounds buffer write. An attacker could exploit this vulnerability by submitting a crafted GPT file to be scanned by ClamAV on an affected device. A successful exploit could allow the attacker to cause the ClamAV scanning process to terminate, resulting in a DoS condition on the affected software.
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Cisco Secure Endpoint | 1.12.3, 1.8.0, 1.11.1, 1.12.4, 1.10.0, 1.12.0, 1.8.1, 1.10.1, 1.10.2, 1.12.2, 1.6.0, 1.9.0, 1.7.0, 1.12.1, 1.12.6, 1.8.4, 1.11.0, 1.9.1, 1.12.5, 2.0.2, 1.1.0, 1.14.0, 2.4.0, 1.15.2, 1.16.0, 1.21.0, 1.22.2, 1.24.5, 1.19.0 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| cis | secure | cert_advisory | 90% |
| open source | clamav | cert_advisory | 90% |