|
|
| |
|
| |
clamav: multiple vulnerabilities
| Package(s): | clamav |
CVE #(s): | CVE-2009-1241
CVE-2009-1371
CVE-2009-1372
|
| Created: | April 24, 2009 |
Updated: | December 8, 2009 |
| Description: |
From the Mandriva advisory:
Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypass detection of malware via a modified RAR archive. CVE-2009-1241
The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding. CVE-2009-1371
Stack-based buffer overflow in the cli_url_canon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers
to cause a denial of service (application crash) and possibly execute
arbitrary code via a crafted URL. CVE-2009-1372
|
| Alerts: |
|
( Log in to post comments)
|
|
|