Skip to main content

Clam AntiVirus Heap Overflows Vulnerabilities

Last Update Date: 4 Feb 2015 Release Date: 2 Feb 2015 3654 Views

RISK: High Risk

TYPE: Security software and application - Security Software & Appliance

TYPE: Security Software & Appliance

Multiple vulnerabilities have been identified in ClamAV, which can exploited by remote attackers to trigger a heap out-of-bounds error with unspecified impact.

  • A heap out of bounds condition with crafted Yoda's crypter files.
  • A heap out of bounds condition with crafted mew packer files.
  • A heap out of bounds condition with crafted upx packer files.
  • A heap out of bounds condition with crafted upack packer files.

Impact

  • Remote Code Execution

System / Technologies affected

  • Clam AntiVirus 0.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to ClamAV version 0.98.6

Vulnerability Identifier


Source


Related Link