Full Disclosure mailing list archives

Re: Multiple Antivirus Scanners DoS attack.


From: Luca Gibelli <luca () clamav net>
Date: Wed, 16 Jun 2004 14:47:41 +0200


*DrWeb (http://www.drweb.ru/)
*AVG v7.0.251
*ClamAV version 0.70, 0.72   <--- please confirm this!
*eTrust InoculateIT version 6.0
Are vulnerable.
 
ClamAV is not vulnerable and hasn't been for a long time (at least 
since 0.6x IIRC).

Just try it:
$ clamscan SERVER_dwn.zip
SERVER_dwn.zip: Oversized.Zip FOUND
 
 
-- 
Luca Gibelli (luca () clamav net) - http://www.ClamAV.net - A GPL virus scanner
PGP Key Fingerprint: C782 121E 8C3A 90E3 7A87  D802 6277 8FF4 5EFC 5582
PGP Key Available on: Key Servers || http://www.clamav.net/gpg/nervoso.gpg

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: