oss-sec mailing list archives

Re: clamav 0.96.5 released


From: Hanno Böck <hanno () hboeck de>
Date: Fri, 3 Dec 2010 15:32:26 +0100

Am Friday 03 December 2010 schrieb Thomas Biege:
JFYI, maybe CVE-IDs are needed...

http://secunia.com/advisories/42426/

Seems like two security issues:

"1) Multiple errors within the processing of PDF files can be exploited to 
e.g. cause a crash.

2) An off-by-one error within the "icon_cb()" function can be exploited to 
cause a memory corruption."

-- 
Hanno Böck              Blog:           http://www.hboeck.de/
GPG: 3DBD3B20           Jabber/Mail:    hanno () hboeck de

http://schokokeks.org - professional webhosting

Attachment: signature.asc
Description: This is a digitally signed message part.


Current thread: