2020年5月31日 星期日

[USN-4370-1] ClamAV vulnerabilities

---------- Forwarded message ---------
From: Marc Deslauriers
Date: May 22, 2020 2:46AM

It was discovered that ClamAV incorrectly handled parsing ARJ archives. A
remote attacker could possibly use this issue to cause ClamAV to crash,
resulting in a denial of service. (CVE-2020-3327)

It was discovered that ClamAV incorrectly handled parsing PDF files. A
remote attacker could possibly use this issue to cause ClamAV to crash,
resulting in a denial of service. (CVE-2020-3341)

References:
  https://usn.ubuntu.com/4370-1
  CVE-2020-3327, CVE-2020-3341

沒有留言:

張貼留言