CVE-2008-1389

Publication date 4 September 2008

Last updated 24 July 2024


Ubuntu priority

libclamav/chmunpack.c in the chm-parser in ClamAV before 0.94 allows remote attackers to cause a denial of service (application crash) via a malformed CHM file, related to an “invalid memory access.”

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
clamav 9.04 jaunty
Not affected
8.10 intrepid
Not affected
8.04 LTS hardy
Fixed 0.94.dfsg.2-1ubuntu0.3~hardy4
7.10 gutsy Ignored end of life, was needed
7.04 feisty Ignored end of life, was needed
6.06 LTS dapper
Fixed 0.94.dfsg.2-1ubuntu0.3~dapper2