ClamAV Vulnerabilities Affecting Cisco Products: August 2026
Cisco patched ClamAV vulnerabilities that allow remote attackers to cause denial-of-service conditions, rated High only for Windows-based platforms.
Cisco released an advisory covering multiple ClamAV vulnerabilities that could let a remote attacker interrupt scanning operations with a denial of service. Software updates are available for affected Cisco platforms, and no workarounds exist. The Security Impact Rating is High for Windows-based platforms because ClamAV runs there in a privileged security context.
- ClamAV flaws allow remote DoS that interrupts scanning operations
- Cisco shipped fixes; no workarounds are available
- High security impact rating applies only to Windows platforms
Multiple vulnerabilities in ClamAV could allow a remote attacker to cause a denial of service (DoS) condition, interrupting scanning operations. For more information about these vulnerabilities, see the Details section of this advisory. For additional information on these vulnerabilities in ClamAV, see the ClamAV blog. Cisco has released software updates that address these vulnerabilities in affected Cisco platforms. There are no workarounds that address these vulnerabilities. Notes: The Security Impact Rating (SIR) for these vulnerabilities is High for Windows-based platforms only because those platforms run the ClamAV scanning process in a privileged security context. The platforms that…
This source does not provide full text. Read it at sec.cloudapps.cisco.com.