Get a Pentest and security assessment of your IT network.

Advisories

iDEFENSE Security Advisory 2005-11-04.1

iDEFENSE Security Advisory 11.04.05 – Remote exploitation of a design error in Clam AntiVirus ClamAV allows attackers to cause a denial of service (DoS) condition. The vulnerability specifically exists in the tnef_attachment function within tnef.c. A user controlled value is used to fseek into the file that is being processed; this allows a user to specify the same block for scanning repeatedly, thus leading to an infinite loop. iDEFENSE has confirmed this vulnerability on ClamAV 0.86.1. All previous versions are suspected vulnerable to this issue.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/41299/11.04.05-1.txt

Source: https://packetstormsecurity.com/files/41299/iDEFENSE-Security-Advisory-2005-11-04.1.html

Related posts
Advisories

Ubuntu Security Notice 93-1

Advisories

Secunia Security Advisory 18052

Advisories

Secunia Security Advisory 20804

Advisories

Secunia Security Advisory 23763