PublicDate: 2007-06-07 21:30:00 UTC Candidate: CVE-2007-3123 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3123 Description: unrar.c in libclamav in ClamAV before 0.90.3 and 0.91 before 0.91rc1 allows remote attackers to cause a denial of service (core dump) via a crafted RAR file with a modified vm_codesize value, which triggers a heap-based buffer overflow. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_clamav: released (0.92.1~dfsg2-1.1~dapper2) edgy_clamav: needed (reached end-of-life) feisty_clamav: released (0.90.2-0ubuntu1.3) gutsy_clamav: released (0.90.3-1) hardy_clamav: released (0.90.3-1) devel_clamav: released (0.90.3-1) upstream_clamav: released (0.90.3)