Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2006-0162
StatusCandidate
DescriptionHeap-based buffer overflow in libclamav/upx.c in Clam Antivirus (ClamAV) before 0.88 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted UPX files.
SeverityHigh
CVSS score7
CVSS vector(AV:R/AC:L/Au:NR/C:P/I:P/A:P/B:N)
PhaseAssigned (10.01.2006)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2006-0162
ReferencesBID : 16191
 CERT-VN : VU#385908
 CONFIRM : http://www.clamav.net/doc/0.88/ChangeLog
 DEBIAN : DSA-947
 FRSIRT : ADV-2006-0116
 FULLDISC : 20060112 ZDI-06-001: Clam AntiVirus UPX Unpacking Code Execution Vulnerability
 GENTOO : GLSA-200601-07
 MANDRIVA : MDKSA-2006:016
 MISC : http://www.zerodayinitiative.com/advisories/ZDI-06...
 OSVDB : 22318
 SECTRACK : 1015457
 SECUNIA : 18379
 SECUNIA : 18453
 SECUNIA : 18463
 SECUNIA : 18478
 SECUNIA : 18548
 TRUSTIX : 2006-0002
 XF : clamav-libclamav-upx-bo(24047)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server