Lucene search

K
prionPRIOn knowledge basePRION:CVE-2007-1745
HistoryApr 16, 2007 - 9:19 p.m.

Design/Logic Flaw

2007-04-1621:19:00
PRIOn knowledge base
www.prio-n.com
2

6.3 Medium

AI Score

Confidence

Low

0.167 Low

EPSS

Percentile

96.1%

The chm_decompress_stream function in libclamav/chmunpack.c in Clam AntiVirus (ClamAV) before 0.90.2 leaks file descriptors, which has unknown impact and attack vectors involving a crafted CHM file, a different vulnerability than CVE-2007-0897. NOTE: some of these details are obtained from third party information.

CPENameOperatorVersion
clamavle0.90.1
ifenslaveeq0.88

References

6.3 Medium

AI Score

Confidence

Low

0.167 Low

EPSS

Percentile

96.1%