Clam AntiVirus pefromupx() Buffer Overflow Has Unspecified Impact
|
|
SecurityTracker Alert ID: 1015457
|
|
SecurityTracker URL: http://securitytracker.com/id?1015457
|
|
CVE Reference: GENERIC-MAP-NOMATCH
(Links to External Site)
|
Date: Jan 10 2006
|
Impact: Not specified
|
Fix Available: Yes
Vendor Confirmed: Yes
|
Version(s): prior to 0.88
|
Description: A vulnerability was reported in Clam AntiVirus. The impact was not specified.
The pefromupx() function in 'libclamav/upx.c' contains a buffer overflow.
The vendor credits 3Com with reporting this vulnerability.
|
Impact: The impact was not specified.
|
Solution: The vendor has issued a fixed version (0.88), available at:
http://sourceforge.net/project/showfiles.php?group_id=86638
|
Vendor URL: www.clamav.net/ (Links to External Site)
|
Cause: Boundary error
|
Underlying OS: Linux (Any), UNIX (Any)
|
|
Message History:
None.
|
Source Message Contents
|
Date: Tue, 10 Jan 2006 01:14:00 -0500
Subject: Clam Anti-Virus vulnerability
|
http://sourceforge.net/project/shownotes.php?release_id=384086&group_id=86638
> libclamav/upx.c: fix possible heap overflow (acab)
|
|