Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Gentoo: GLSA 200404-07 Normal: ClamAV RAR Archive DoS Attack

gentoo
Calendar Grey April 7, 2004
Scroller Gentoo
ClamAV exposes a denial of service risk when processing certain RAR files on Gentoo installations. It is advised to upgrade for enhanced protection.
ClamAV is vulnerable to a denial of service attack when processing certain RAR archives.

Summary

Gentoo Linux Security Advisory GLSA 200404-07 https://security.gentoo.org/ Severity: Normal Title: ClamAV RAR Archive Remote Denial Of Service Vulnerability
Date: April 07, 2004 Bugs: #45357 ID: 200404-07

Synopsis ======= ClamAV is vulnerable to a denial of service attack when processing certain RAR archives.
Background ========= From http://www.clamav.net/ :
"Clam AntiVirus is a GPL anti-virus toolkit for UNIX. The main purpose of this software is the integration with mail servers (attachment scanning). The package provides a flexible and scalable multi-threaded daemon, a command line scanner, and a tool for automatic updating via Internet. The programs are based on a shared library distributed with the Clam AntiVirus package, which you can use with your own software. Most importantly, the virus database is kept up to date."
Affected packages ================ ---------------------...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround