2018年8月2日 星期四

[USN-3722-1] ClamAV vulnerabilities

---------- Forwarded message ----------
From: Marc Deslauriers
Date: 2018-07-25 2:44 GMT+08:00

Summary:

ClamAV could be made to hang if it opened a specially crafted file.

Details:

It was discovered that ClamAV incorrectly handled parsing certain HWP
files. A remote attacker could use this issue to cause ClamAV to hang,
resulting in a denial of service. (CVE-2018-0360)

It was discovered that ClamAV incorrectly handled parsing certain PDF
files. A remote attacker could use this issue to cause ClamAV to hang,
resulting in a denial of service. (CVE-2018-0361)

References:
  https://usn.ubuntu.com/usn/usn-3722-1
  CVE-2018-0360, CVE-2018-0361

沒有留言:

張貼留言