[clamav] [CVE-2007-6595] [CVE-2008-0318] execution of arbitrary / DoS vulnerability
Bug #195685 reported by
disabled.user
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
clamav (Ubuntu) |
New
|
Undecided
|
Unassigned |
Bug Description
Binary package hint: clamav
References:
DSA-1497-1 (http://
Quoting:
"Several vulnerabilities have been discovered in the Clam anti-virus
toolkit, which may lead to the execution of arbitrary or local denial
of service. The Common Vulnerabilities and Exposures project identifies
the following problems:
CVE-2007-6595
It was discovered that temporary files are created insecurely,
which may result in local denial of service by overwriting files.
CVE-2008-0318
Silvio Cesare discovered an integer overflow in the parser for PE
headers."
To post a comment you must log in.
This already was fixed see https:/ /bugs.edge. launchpad. net/ubuntu/ +source/ clamav/ +bug/191150