PT-2011-4043 · Cisco · Clamav

Publicado

2011-08-05

·

Atualizado

2024-06-15

·

CVE-2011-2721

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions ClamAV versions prior to 0.97.2
Description The issue is caused by an off-by-one error in the cli hm scan function, located in the matcher-hash.c file of the libclamav library. This error allows remote attackers to cause a denial of service, resulting in the daemon crashing when it encounters an e-mail message that is not properly handled during certain hash calculations.
Recommendations For versions prior to 0.97.2, update to version 0.97.2 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2011-2721
OPENSUSE-SU-2024:10571-1

Produtos afetados

Clamav