Mandriva Linux Security Advisory MDKSA-2006-138 – Damian Put discovered a boundary error in the UPX extraction module in ClamAV which is used to unpack PE Windows executables. This could be abused to cause a Denial of Service issue and potentially allow for the execution of arbitrary code with the permissions of the user running clamscan or clamd.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/49219/MDKSA-2006-138.txt
Source: https://packetstormsecurity.com/files/49219/Mandriva-Linux-Security-Advisory-2006.138.html

