

RedLine Stealer – Active IOCs
April 22, 2024
Windows Vulnerabilities Discovered Giving Threat Actors Rootkit-Like Capabilities
April 22, 2024
RedLine Stealer – Active IOCs
April 22, 2024
Windows Vulnerabilities Discovered Giving Threat Actors Rootkit-Like Capabilities
April 22, 2024Severity
High
Analysis Summary
CVE-2024-20380
Cisco ClamAV is vulnerable to a denial of service, caused by improper input validation by the he HTML file parser. By submitting a specially crafted file containing HTML content to be scanned, a remote attacker could exploit this vulnerability to cause the ClamAV scanning process to terminate, and results in a denial of service condition.
Impact
- Denial of Service
Indicators of Compromise
CVE
- CVE-2024-20380
Affected Vendors
Affected Products
- Cisco ClamAV 1.3
Remediation
Upgrade to the latest version of Cisco ClamAV, available from the Cisco ClamAV Website.