CVE-2007-2650
Summary
| CVE | CVE-2007-2650 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-05-14 21:19:00 UTC |
| Updated | 2020-11-09 02:56:00 UTC |
| Description | The OLE2 parser in Clam AntiVirus (ClamAV) allows remote attackers to cause a denial of service (resource consumption) via an OLE2 file with (1) a large property size or (2) a loop in the FAT file block chain that triggers an infinite loop, as demonstrated via a crafted DOC file. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| ClamAV Multiple Vulnerabilities - Advisories - Secunia |
SECUNIA |
secunia.com |
Patch, Third Party Advisory |
| SUSE update for clamav - Advisories - Secunia |
SECUNIA |
secunia.com |
Third Party Advisory |
| Clam AntiVirus ClamAV OLE2 Parser Remote Denial Of Service Vulnerability |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| Trustix update for clamav - Advisories - Secunia |
SECUNIA |
secunia.com |
Third Party Advisory |
| 2007-0020 |
TRUSTIX |
www.trustix.org |
Broken Link |
| svn.clamav.net/svn/clamav-devel/trunk/ChangeLog |
CONFIRM |
svn.clamav.net |
Broken Link |
| Mandriva update for clamav - Secunia.com |
SECUNIA |
secunia.com |
Third Party Advisory |
| Debian -- Security Information -- DSA-1320-1 clamav |
DEBIAN |
www.debian.org |
Third Party Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH |
VUPEN |
www.vupen.com |
Permissions Required |
| 404 Not Found |
MLIST |
lurker.clamav.net |
Broken Link |
| ClamAV: Multiple Denials of Service — Gentoo Linux Documentation |
GENTOO |
security.gentoo.org |
Third Party Advisory |
| Gmane -- Mail To News And Back Again |
MISC |
article.gmane.org |
Broken Link |
| Gentoo update for clamav - Advisories - Secunia |
SECUNIA |
secunia.com |
Third Party Advisory |
| Security Announcement |
SUSE |
www.novell.com |
Third Party Advisory |
| Kolab Server ClamAV Denial of Service - Advisories - Secunia |
SECUNIA |
secunia.com |
Third Party Advisory |
| 404 Not Found |
CONFIRM |
kolab.org |
Broken Link |
| Debian update for clamav - Advisories - Secunia |
SECUNIA |
secunia.com |
Third Party Advisory |
| Support / Security / Advisories / / MDKSA-2007:115 | Mandriva |
MANDRIVA |
www.mandriva.com |
Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 900004 CBL-Mariner Linux Security Update for clamav 0.101.2
- 903472 Common Base Linux Mariner (CBL-Mariner) Security Update for clamav (3170)