*** This bug is a security vulnerability ***

Public security bug reported:

Binary package hint: clamav

see CVE page for more info - this bug practically crashes clamd and
renders eg. a mailserver useless. just by sending a bad email (happened
to me today)

could be a duplicate of
https://bugs.launchpad.net/ubuntu/+source/clamav/+bug/218915 but i'm not
sure - this really is a security issue, not something for a wishlist

** Affects: clamav (Ubuntu)
     Importance: Undecided
         Status: New

** Visibility changed to: Public

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2008-1387

-- 
CVE-2008-1387 - ClamAV before 0.93 allows remote attackers to cause a denial of 
service (CPU consumption) via a crafted ARJ archive, as demonstrated by the 
PROTOS GENOME test suite for Archive Formats
https://bugs.launchpad.net/bugs/223766
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to