ClamAV Hash Manager Off-By-One Denial of Service Vulnerability
BID:48891
Info
ClamAV Hash Manager Off-By-One Denial of Service Vulnerability
| Bugtraq ID: | 48891 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2011-2721 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 26 2011 12:00AM |
| Updated: | Apr 13 2015 08:24PM |
| Credit: | Jorgen Lundman |
| Vulnerable: |
Ubuntu Ubuntu Linux 11.04 powerpc Ubuntu Ubuntu Linux 11.04 i386 Ubuntu Ubuntu Linux 11.04 ARM Ubuntu Ubuntu Linux 11.04 amd64 Pardus Linux 2011 0 Pardus Linux 2009 0 Mandriva Linux Mandrake 2009.0 x86_64 Mandriva Linux Mandrake 2009.0 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 MandrakeSoft Corporate Server 4.0 x86_64 MandrakeSoft Corporate Server 4.0 Gentoo Linux Clam Anti-Virus ClamAV 0.96.5 Clam Anti-Virus ClamAV 0.96.4 Clam Anti-Virus ClamAV 0.96.3 Clam Anti-Virus ClamAV 0.96.2 Clam Anti-Virus ClamAV 0.96.1 Clam Anti-Virus ClamAV 0.95.2 Clam Anti-Virus ClamAV 0.95.1 Clam Anti-Virus ClamAV 0.94.2 Clam Anti-Virus ClamAV 0.94.1 Clam Anti-Virus ClamAV 0.93.3 Clam Anti-Virus ClamAV 0.93.1 Clam Anti-Virus ClamAV 0.92.1 Clam Anti-Virus ClamAV 0.91.2 Clam Anti-Virus ClamAV 0.91.1 Clam Anti-Virus ClamAV 0.90.3 Clam Anti-Virus ClamAV 0.90.2 Clam Anti-Virus ClamAV 0.90.1 Clam Anti-Virus ClamAV 0.90 Clam Anti-Virus ClamAV 0.97 Clam Anti-Virus ClamAV 0.96 Clam Anti-Virus ClamAV 0.95 Clam Anti-Virus ClamAV 0.94 Clam Anti-Virus ClamAV 0.93 Clam Anti-Virus ClamAV 0.92 Clam Anti-Virus ClamAV 0.91 |
| Not Vulnerable: |
Clam Anti-Virus ClamAV 0.97.2 |
Discussion
ClamAV Hash Manager Off-By-One Denial of Service Vulnerability
ClamAV is prone to a denial-of-service vulnerability due to an off-by-one error.
Attackers may exploit this issue to crash the affected application, denying service to legitimate users.
Versions prior to ClamAV 0.97.2 are vulnerable.
ClamAV is prone to a denial-of-service vulnerability due to an off-by-one error.
Attackers may exploit this issue to crash the affected application, denying service to legitimate users.
Versions prior to ClamAV 0.97.2 are vulnerable.
Exploit / POC
ClamAV Hash Manager Off-By-One Denial of Service Vulnerability
An attacker can use readily available network utilities to exploit this issue.
An attacker can use readily available network utilities to exploit this issue.
References
ClamAV Hash Manager Off-By-One Denial of Service Vulnerability
References:
References:
- Bug 2818 - Core dump in cli_hm_scan (ClamAV)
- ClamAV Homepage (ClamAV)
- GIT Commit (ClamAV)