LWN.net Logo

clamav: improper string checking

Package(s):clamav CVE #(s):
Created:May 12, 2004 Updated:May 12, 2004
Description: Versions of clamav prior to 0.70 fail to check filenames when responding to viruses; with certain configurations, this failure can allow an attacker to execute arbitrary commands.
Alerts:
Gentoo 200405-03 2004-05-11

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds