[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250039

 
 

909

 
 

195882

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-1680 clamav -- buffer overflow, stack consumption

ID: oval:org.mitre.oval:def:8113Date: (C)2009-12-15   (M)2021-06-02
Class: PATCHFamily: unix




Moritz Jodeit discovered that ClamAV, an anti-virus solution, suffers from an off-by-one-error in its VBA project file processing, leading to a heap-based buffer overflow and potentially arbitrary code execution (>CVE-2008-5050). Ilja van Sprundel discovered that ClamAV contains a denial of service condition in its JPEG file processing because it does not limit the recursion depth when processing JPEG thumbnails (CVE-2008-5314).

Platform:
Debian 4.0
Product:
clamav
Reference:
DSA-1680
CVE-2008-5050
CVE-2008-5314
CVE    2
CVE-2008-5314
CVE-2008-5050
CPE    1
cpe:/o:debian:debian_linux:4.x

© SecPod Technologies