Title: Clam AntiVirus tnef.c tnef_attachment Function Infinite Loop DoS
Info
Disclosure
Nov 04, 2005
Discovery
Oct 07, 2005
Dates
Exploit
Unknown
Solution
Nov 03, 2005
Description
Clam AntiVirus contains a flaw that may allow a remote denial of service. The issue is triggered due to a design error of the 'tnef_attachment()' function in 'tnef.c', which uses an user controlled value of the 'fseek()' function to move the file pointer to a specific byte in a file. With a specially crafted CAB file, a remote attacker can cause the application to enter an infinite loop resulting in a loss of availability.
Classification
Location:
Remote / Network Access
Attack Type:
Denial of Service
Impact:
Loss of Availability
Solution:
Upgrade
Exploit:
Exploit Unknown
Disclosure:
OSVDB Verified,
Vendor Verified
OSVDB:
Security Software
Solution
Upgrade to version 0.87.1 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.