CVE-2008-1836
Published: 16 April 2008
The rfc2231 function in message.c in libclamav in ClamAV before 0.93 allows remote attackers to cause a denial of service (crash) via a crafted message that produces a string that is not null terminated, which triggers a buffer over-read.
Priority
Status
Package | Release | Status |
---|---|---|
clamav Launchpad, Ubuntu, Debian |
dapper |
Released
(0.94.dfsg.2-1ubuntu0.3~dapper2)
|
feisty |
Ignored
(end of life, was needed)
|
|
gutsy |
Ignored
(end of life, was needed)
|
|
hardy |
Released
(0.94.dfsg.2-1ubuntu0.3~hardy4)
|
|
intrepid |
Not vulnerable
(0.94.dfsg.1~rc1-0ubuntu1)
|
|
jaunty |
Not vulnerable
(0.94.dfsg.1~rc1-0ubuntu1)
|
|
upstream |
Released
(0.93)
|