Input validation error in Cisco Email Security Appliance - CVE-2018-15460

 

Input validation error in Cisco Email Security Appliance - CVE-2018-15460

Published: January 10, 2019


Vulnerability identifier: #VU16923
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-15460
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause DoS condition.

The vulnerability exists in the email message filtering feature due to improper filtering of email messages that contain references to whitelisted URLs. A remote attacker can send a malicious email message that contains a large number of whitelisted URLs, cause the CPU utilization to increase to 100 percent and force the affected device to stop scanning and forwarding email messages.


Affected software

Cisco Email Security Appliance

How to mitigate CVE-2018-15460

The vulnerability has been addressed in the versions 12.0.0-281, 11.1.2-023, 11.0.2-044.

Cisco Email Security Appliance - addressed in versions 11.0.2 044, 11.1.2 023, 12.0.0 281

External References

Related Security Bulletins