Cisco (2)

Cisco warns of denial of service flaw with PoC exploit code

Teilen:

Cisco has released security updates to patch a ClamAV denial-of-service (DoS) vulnerability, which has proof-of-concept (PoC) exploit code.

Tracked as CVE-2025-20128, the vulnerability is caused by a heap-based buffer overflow weakness in the Object Linking and Embedding 2 (OLE2) decryption routine, allowing unauthenticated, remote attackers to trigger a DoS condition on vulnerable devices.

If this vulnerability is successfully exploited, it could cause the ClamAV antivirus scanning process to crash, preventing or delaying further scanning operations.

“An attacker could exploit this vulnerability by submitting a crafted file containing OLE2 content to be scanned by ClamAV on an affected device,” Cisco explained. “A successful exploit could allow the attacker to terminate the ClamAV scanning process, resulting in a DoS condition on the affected software.”

However, in an advisory issued today, the company noted that overall system stability would not be affected even after successful attacks.

The vulnerable products list includes the Secure Endpoint Connector software for Linux, Mac, and Windows-based platforms. This solution helps ingest Cisco Secure Endpoint audit logs and events into security information and event management (SIEM) systems like Microsoft Sentinel.

PoC exploit available, no active exploitation

While the Cisco Product Security Incident Response Team (PSIRT) said it has no evidence of in-the-wild exploitation, it added that CVE-2025-20128 exploit code is already available.

“The Cisco PSIRT is aware that proof-of-concept exploit code is available for the vulnerabilities that are described in this advisory,” Cisco PSIRT stated.

Today, the company also patched a Cisco BroadWorks DoS security flaw (CVE-2025-20165) and a critical severity privilege escalation vulnerability (CVE-2025-20156) in the Cisco Meeting Management REST API that lets hackers gain admin privileges on unpatched devices.

In October, it fixed another DoS security bug (CVE-2024-20481) in its Cisco ASA and Firepower Threat Defense (FTD) software, discovered during large-scale brute-force attacks against Cisco Secure Firewall VPN devices in April 2024.

One month later, it addressed a maximum severity vulnerability (CVE-2024-20418) that allows attackers to run commands with root privileges on vulnerable Ultra-Reliable Wireless Backhaul (URWB) industrial access points.

Quelle

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
6:14 am, Apr. 3, 2025
Wetter-Symbol 8°C
L: 7° | H: 9°
aufgelockerte Bewölkung
Luftfeuchtigkeit: 83 %
Druck: 1019 mb
Wind: 4 mph E
Windböe: 10 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 26%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 6:30 am
Sonnenuntergang: 7:36 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
7° | 9°°C 0 mm 0% 12 mph 83 % 1021 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
10° | 18°°C 0 mm 0% 14 mph 86 % 1021 mb 0 mm/h
Sa. Apr. 05 10:00 pm
Wetter-Symbol
7° | 17°°C 0 mm 0% 12 mph 73 % 1022 mb 0 mm/h
So. Apr. 06 10:00 pm
Wetter-Symbol
7° | 14°°C 0 mm 0% 12 mph 81 % 1025 mb 0 mm/h
Mo. Apr. 07 10:00 pm
Wetter-Symbol
6° | 14°°C 0 mm 0% 9 mph 77 % 1028 mb 0 mm/h
Today 7:00 am
Wetter-Symbol
8° | 8°°C 0 mm 0% 10 mph 83 % 1019 mb 0 mm/h
Today 10:00 am
Wetter-Symbol
10° | 13°°C 0 mm 0% 11 mph 77 % 1019 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
15° | 18°°C 0 mm 0% 12 mph 59 % 1020 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
18° | 18°°C 0 mm 0% 11 mph 55 % 1019 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
14° | 14°°C 0 mm 0% 8 mph 64 % 1020 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
13° | 13°°C 0 mm 0% 7 mph 71 % 1021 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
11° | 11°°C 0 mm 0% 5 mph 80 % 1021 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
11° | 11°°C 0 mm 0% 4 mph 84 % 1021 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€77,150.89
-0.97%
Ethereum(ETH)
€1,695.48
-1.90%
Fesseln(USDT)
€0.92
0.00%
XRP(XRP)
€1.92
-0.92%
Solana(SOL)
€111.11
-3.27%
USDC(USDC)
€0.92
0.01%
Dogecoin(DOGE)
€0.154145
-2.14%
Shiba Inu(SHIB)
€0.000011
1.21%
Pepe(PEPE)
€0.000006
-2.69%
Nach oben scrollen