PT-2005-3359 · Clamav · Libclamav+1

Alex Wheeler

+1

·

Published

2005-08-03

·

Updated

2017-07-11

·

CVE-2005-2450

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Clam AntiVirus (ClamAV) versions 0.86.1 and earlier
Description The issue is related to multiple integer overflows in file format processors for TNEF, CHM, or FSG files in libclamav. This allows remote attackers to gain privileges via a crafted e-mail message.
Recommendations For Clam AntiVirus (ClamAV) versions 0.86.1 and earlier, update to a version later than 0.86.1 to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-2450
DSA-776-1
DTSA-3-1

Affected Products

Clam Antivirus
Libclamav