Gentoo Linux Security Advisory GLSA 200812-21 – Two vulnerabilities in ClamAV may allow for the remote execution of arbitrary code or a Denial of Service. Moritz Jodeit reported an off-by-one error within the get_unicode_name() function in libclamav/vba_extract.c when processing VBA project files (CVE-2008-5050). Ilja van Sprundel reported an infinite recursion error within the cli_check_jpeg_exploit() function in libclamav/special.c when processing JPEG files (CVE-2008-5314). Versions less than 0.94.2 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/73391/glsa-200812-21.txt
Source: https://packetstormsecurity.com/files/73391/Gentoo-Linux-Security-Advisory-200812-21.html

