[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2008:189-1 -- Mandriva clamav

ID: oval:org.secpod.oval:def:301378Date: (C)2012-01-07   (M)2022-01-03
Class: PATCHFamily: unix




Multiple vulnerabilities were discovered in ClamAV and corrected with the 0.94 release, including: A vulnerability in ClamAV"s chm-parser allowed remote attackers to cause a denial of service via a malformed CHM file . A vulnerability in libclamav would allow attackers to cause a denial of service via vectors related to an out-of-memory condition . Multiple memory leaks were found in ClamAV that could possibly allow attackers to cause a denial of service via excessive memory consumption . A number of unspecified vulnerabilities in ClamAV were reported that have an unknown impact and attack vectors related to file descriptor leaks . Other bugs have also been corrected in 0.94 which is being provided with this update. Because this new version has increased the major of the libclamav library, updated dependent packages are also being provided. Update: The previous update had experimental support enabled, which caused ClamAV to report the version as 0.94-exp rather than 0.94, causing ClamAV to produce bogus warnings about the installation being outdated. This update corrects that problem.

Platform:
Mandriva Linux 2007.1
Mandriva Linux 2008.1
Mandriva Linux 2008.0
Product:
clamav
Reference:
MDVSA-2008:189-1
CVE-2008-1389
CVE-2008-3912
CVE-2008-3913
CVE-2008-3914
CVE    4
CVE-2008-1389
CVE-2008-3912
CVE-2008-3913
CVE-2008-3914
...
CPE    3
cpe:/o:mandriva:linux:2008.1
cpe:/o:mandriva:linux:2007.1
cpe:/o:mandriva:linux:2008.0

© SecPod Technologies