IMPORTANT
SNS 3.x versions have reached End of Maintenance since July 1st, 2024.
We recommend that you update your SNS firewalls to a version with maintenance to guarantee the protection of your infrastructure.
Resolved vulnerabilities in SNS 3.4.1
ClamAV
A set of vulnerabilities has been fixed by upgrading the ClamAV antiviral engine :
- CVE-2017-12374 : ClamAV UAF (use-after-free) Vulnerabilities.
- CVE-2017-12375 : ClamAV Buffer Overflow Vulnerability.
- CVE-2017-12376 : ClamAV Buffer Overflow in handle_pdfname Vulnerability.
- CVE-2017-12377 : ClamAV Mew Packet Heap Overflow Vulnerability.
- CVE-2017-12378 : ClamAV Buffer Over Read Vulnerability.
- CVE-2017-12379 : ClamAV Buffer Overflow in messageAddArgument Vulnerability.
- CVE-2017-12380 : ClamAV Null Dereference Vulnerability.
Details on these vulnerabilities can be found on our website https://advisories.stormshield.eu.