Secunia Logo
 
CVE Reference: CVE-2006-0162
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-0162

Description:
Heap-based buffer overflow in libclamav/upx.c in Clam Antivirus (ClamAV) before 0.88 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted UPX files.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/24047

TRUSTIX
  http://www.trustix.org/errata/2006/0002/

ST
  1015457

SREASON
  http://securityreason.com/securityalert/342

SAID
  Secunia Advisory: SA18453
  Secunia Advisory: SA18379
  Secunia Advisory: SA18478
  Secunia Advisory: SA18548
  Secunia Advisory: SA18463

OSVDB
  22318

MISC
  http://www.zerodayinitiative.com/advisories/ZDI-06-001.html

MANDRIVA
  http://frontal2.mandriva.com/security/advisories?name=MDKSA-2006:016

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200601-07.xml

FULLDISC
  http://lists.grok.org.uk/pipermail/full-disclosure/2006-January/041325.html

DEBIAN
  http://www.debian.org/security/2006/dsa-947

CONFIRM
  http://www.clamav.net/doc/0.88/ChangeLog

CERT-VN
  385908

BID
  16191


Return to the previous page.