From d4ace0bd8c5373395617d5c39499845b753bd94e Mon Sep 17 00:00:00 2001 From: Marcus Alves Grando Date: Tue, 12 Dec 2006 20:51:24 +0000 Subject: - clamav -- Multipart Nestings Denial of Service --- security/vuxml/vuln.xml | 35 +++++++++++++++++++++++++++++++++++ 1 file changed, 35 insertions(+) (limited to 'security') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index c9ed44c3c44f..fa86e3ad3821 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -34,6 +34,41 @@ Note: Please add new entries to the beginning of this file. --> + + clamav -- Multipart Nestings Denial of Service + + + clamav + 0.88.7 + + + clamav-devel + 20061029 + + + + +

Secunia reports:

+
+

Clam AntiVirus have a vulnerability, which can be exploited by + malicious people to cause a DoS (Denial of Service).

+

The vulnerability is caused due to a stack overflow when scanning + messages with deeply nested multipart content. This can be + exploited to crash the service by sending specially crafted emails + to a vulnerable system.

+
+ +
+ + http://secunia.com/advisories/23347/ + http://www.quantenblog.net/security/virus-scanner-bypass + + + 2006-12-06 + 2006-10-12 + +
+ libxine -- multiple buffer overflow vulnerabilities -- cgit v1.2.3