Clam AntiVirus ClamAV OLE2 Parser Remote Denial Of Service Vulnerability
TITLE: Clam AntiVirus ClamAV OLE2 Parser Remote Denial Of Service Vulnerability
CLASS: Failure to Handle Exceptional Conditions
CVE: CVE-2007-2650
REMOTE: Yes
LOCAL: No
PUBLISHED: Jun 04 2007 12:00AM
UPDATE: Jun 15 2007 07:19PM
CREDIT: Victor Stinner discovered this vulnerability.
VULNERABLE:
Trustix Secure Linux 3.0.5NOT VULNERABLE:
Trustix Secure Linux 3.0
Trustix Secure Linux 2.2
S.u.S.E. openSUSE 10.2
S.u.S.E. Open-Enterprise-Server 0
S.u.S.E. Novell Linux POS 9
S.u.S.E. Linux Professional 10.0 OSS
S.u.S.E. Linux Professional 10.1
S.u.S.E. Linux Personal 10.0 OSS
S.u.S.E. Linux Personal 10.1
S.u.S.E. Linux Enterprise Server 9
MandrakeSoft Linux Mandrake 2007.1 x86_64
MandrakeSoft Linux Mandrake 2007.1
MandrakeSoft Linux Mandrake 2007.0 x86_64
MandrakeSoft Linux Mandrake 2007.0
MandrakeSoft Corporate Server 4.0 x86_64
MandrakeSoft Corporate Server 3.0 x86_64
MandrakeSoft Corporate Server 3.0
MandrakeSoft Corporate Server 4.0
Gentoo Linux
Clam Anti-Virus ClamAV 0.90.2
Clam Anti-Virus ClamAV 0.90.1
Clam Anti-Virus ClamAV 0.90
Clam Anti-Virus ClamAV 0.90.3
Vai alla pagina originale su Security Focus
Discussion
ClamAV is prone to a denial-of-service vulnerability when handling malformed OLE2 files.
A successful attack may allow an attacker to cause denial-of-service conditions.
Versions prior to ClamAV 0.90.3 are affected.
Exploit
Proof-of-concept code demonstrating this issue is reported to be publicly available.
Solution
Solution:
The vendor released ClamAV 0.90.3 to address this issue. Please see the references for more information.
Clam Anti-Virus ClamAV 0.90
- Clam Anti-Virus clamav-0.90.3.tar.gz
http://freshmeat.net/redir/clamav/29355/url_tgz/clamav-0.90.3.tar.gz
Clam Anti-Virus ClamAV 0.90.1
- Clam Anti-Virus clamav-0.90.3.tar.gz
http://freshmeat.net/redir/clamav/29355/url_tgz/clamav-0.90.3.tar.gz
Clam Anti-Virus ClamAV 0.90.2
- Clam Anti-Virus clamav-0.90.3.tar.gz
http://freshmeat.net/redir/clamav/29355/url_tgz/clamav-0.90.3.tar.gz
References
References:
- Bug in OLE2 file parser (Victor Stinner)
- ClamAV Home Page (Clam Anti-Virus)
- Clam AntiVirus Changelog (ClamAV)