LWN.net Logo

clamav: multiple vulnerabilities

Package(s):clamav CVE #(s):CVE-2012-1457 CVE-2012-1458 CVE-2012-1459
Created:June 18, 2012 Updated:August 17, 2012
Description: From the Mandriva advisory:

The TAR file parser in ClamAV 0.96.4 allows remote attackers to bypass malware detection via a TAR archive entry with a length field that exceeds the total TAR file size. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations (CVE-2012-1457).

The Microsoft CHM file parser in ClamAV 0.96.4 allows remote attackers to bypass malware detection via a crafted reset interval in the LZXC header of a CHM file. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different CHM parser implementations (CVE-2012-1458).

The TAR file parser in ClamAV 0.96.4 allows remote attackers to bypass malware detection via a TAR archive entry with a length field corresponding to that entire entry, plus part of the header of the next entry. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations (CVE-2012-1459).

Alerts:
Mandriva MDVSA-2012:094 2012-06-18
Ubuntu USN-1482-1 2012-06-19
Ubuntu USN-1482-2 2012-06-19
Fedora FEDORA-2012-9563 2012-06-22
openSUSE openSUSE-SU-2012:0833-1 2012-07-04
Mageia MGASA-2012-0144 2012-07-09
Fedora FEDORA-2012-9577 2012-07-10
Ubuntu USN-1482-3 2012-08-16

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds