Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2022.0024
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2022-0024)
Resumen:The remote host is missing an update for the 'clamav' package(s) announced via the MGASA-2022-0024 advisory.
Descripción:Summary:
The remote host is missing an update for the 'clamav' package(s) announced via the MGASA-2022-0024 advisory.

Vulnerability Insight:
A vulnerability in the OOXML parsing module in Clam AntiVirus (ClamAV)
Software version 0.104.1 and LTS version 0.103.4 and prior versions could
allow an unauthenticated, remote attacker to cause a denial of service
condition on an affected device. The vulnerability is due to improper
checks that may result in an invalid pointer read. An attacker could
exploit this vulnerability by sending a crafted OOXML file to an affected
device. An exploit could allow the attacker to cause the ClamAV scanning
process to crash, resulting in a denial of service condition.
(CVE-2022-20698)

Affected Software/OS:
'clamav' package(s) on Mageia 8.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2022-20698
Cisco Security Advisory: https://blog.clamav.net/2022/01/clamav-01035-and-01042-security-patch.html
https://blog.clamav.net/2022/01/clamav-01035-and-01042-security-patch.html
https://security.gentoo.org/glsa/202310-01
CopyrightCopyright (C) 2022 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.