ClamAV is prone to a denial-of-service vulnerability because it fails to properly bounds-check specially crafted PDF files. An attacker can exploit this issue to cause denial-of-service conditions. Due to the nature of this issue, arbitrary code execution may be possible this has not been confirmed. ClamAV 0.96.2 is vulnerable other versions may also be affected.
Updates are available. Please see the references for more information.
- Apple iTunes Malformed .mov File Buffer Overflow Vulnerability
- Adobe Flash Player/Air Multiple DoS Vulnerabilities - Aug09 (Linux)
- freeSSHd SFTP 'rename' and 'realpath' Remote DoS Vulnerability
- Apache 'mod_proxy_http.c' Denial Of Service Vulnerability