Lucene search

K
nvd[email protected]NVD:CVE-2007-1745
HistoryApr 16, 2007 - 9:19 p.m.

CVE-2007-1745

2007-04-1621:19:00
web.nvd.nist.gov
6

7.1 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

7.4 High

AI Score

Confidence

High

0.167 Low

EPSS

Percentile

96.1%

The chm_decompress_stream function in libclamav/chmunpack.c in Clam AntiVirus (ClamAV) before 0.90.2 leaks file descriptors, which has unknown impact and attack vectors involving a crafted CHM file, a different vulnerability than CVE-2007-0897. NOTE: some of these details are obtained from third party information.

Affected configurations

NVD
Node
clam_anti-virusclamavRange0.90.1
OR
ifenslaveifenslaveMatch0.88

References

7.1 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

7.4 High

AI Score

Confidence

High

0.167 Low

EPSS

Percentile

96.1%