Lucene search

K
ubuntuUbuntuUSN-1482-1
HistoryJun 19, 2012 - 12:00 a.m.

ClamAV vulnerabilities

2012-06-1900:00:00
ubuntu.com
35

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

6.4 Medium

AI Score

Confidence

Low

0.975 High

EPSS

Percentile

100.0%

Releases

  • Ubuntu 12.04
  • Ubuntu 11.10
  • Ubuntu 11.04
  • Ubuntu 10.04

Packages

  • clamav - Anti-virus utility for Unix

Details

It was discovered that ClamAV incorrectly handled certain malformed TAR
archives. A remote attacker could create a specially-crafted TAR file
containing malware that could escape being detected. (CVE-2012-1457,
CVE-2012-1459)

It was discovered that ClamAV incorrectly handled certain malformed CHM
files. A remote attacker could create a specially-crafted CHM file
containing malware that could escape being detected. (CVE-2012-1458)

OSVersionArchitecturePackageVersionFilename
Ubuntu12.04noarchlibclamav6< 0.97.5+dfsg-1ubuntu0.12.04.1UNKNOWN
Ubuntu12.04noarchclamav< 0.97.5+dfsg-1ubuntu0.12.04.1UNKNOWN
Ubuntu12.04noarchclamav-daemon< 0.97.5+dfsg-1ubuntu0.12.04.1UNKNOWN
Ubuntu12.04noarchclamav-dbg< 0.97.5+dfsg-1ubuntu0.12.04.1UNKNOWN
Ubuntu12.04noarchclamav-freshclam< 0.97.5+dfsg-1ubuntu0.12.04.1UNKNOWN
Ubuntu12.04noarchclamav-milter< 0.97.5+dfsg-1ubuntu0.12.04.1UNKNOWN
Ubuntu12.04noarchlibclamav-dev< 0.97.5+dfsg-1ubuntu0.12.04.1UNKNOWN
Ubuntu11.10noarchlibclamav6< 0.97.5+dfsg-1ubuntu0.11.10.1UNKNOWN
Ubuntu11.10noarchclamav< 0.97.5+dfsg-1ubuntu0.11.10.1UNKNOWN
Ubuntu11.10noarchclamav-daemon< 0.97.5+dfsg-1ubuntu0.11.10.1UNKNOWN
Rows per page:
1-10 of 281

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

6.4 Medium

AI Score

Confidence

Low

0.975 High

EPSS

Percentile

100.0%