Vulnerability Description
Memory leak in the TCP stack in the kernel in Sophos UTM before 9.109 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sophos | Unified Threat Management Software | <= 9.108 |
| Sophos | Unified Threat Management | 110 |
Related Weaknesses (CWE)
References
- http://blogs.sophos.com/2014/02/20/utm-up2date-9-109/PatchVendor Advisory
- http://secunia.com/advisories/57344Vendor Advisory
- http://www.securityfocus.com/bid/66231
- http://www.securitytracker.com/id/1029920
- http://blogs.sophos.com/2014/02/20/utm-up2date-9-109/PatchVendor Advisory
- http://secunia.com/advisories/57344Vendor Advisory
- http://www.securityfocus.com/bid/66231
- http://www.securitytracker.com/id/1029920
FAQ
What is CVE-2014-2537?
CVE-2014-2537 is a vulnerability with a CVSS score of 7.8 (HIGH). Memory leak in the TCP stack in the kernel in Sophos UTM before 9.109 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
How severe is CVE-2014-2537?
CVE-2014-2537 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-2537?
Check the references section above for vendor advisories and patch information. Affected products include: Sophos Unified Threat Management Software, Sophos Unified Threat Management.