ClamAV RAR File Scan Evasion Vulnerability

Bugtraq ID: 34344
Class: Input Validation Error
CVE: CVE-2009-1241
Remote: Yes
Local: No
Published: Apr 02 2009 12:00AM
Updated: Dec 10 2009 07:54PM
Credit: Thierry Zoller
Vulnerable: SuSE SUSE Linux Enterprise Server 11
SuSE Suse Linux Enterprise Desktop 11
SuSE Linux Enterprise Server 9
SuSE Linux Enterprise Server 10
S.u.S.E. openSUSE 11.1
S.u.S.E. openSUSE 11.0
S.u.S.E. openSUSE 10.3
Mandriva Linux Mandrake 2009.0 x86_64
Mandriva Linux Mandrake 2009.0
Mandriva Linux Mandrake 2008.1 x86_64
Mandriva Linux Mandrake 2008.1
Mandriva Linux Mandrake 2008.0 x86_64
Mandriva Linux Mandrake 2008.0
MandrakeSoft Corporate Server 4.0 x86_64
MandrakeSoft Corporate Server 3.0 x86_64
MandrakeSoft Corporate Server 3.0
MandrakeSoft Corporate Server 4.0
Clam Anti-Virus ClamAV 0.94.2
Clam Anti-Virus ClamAV 0.94.1
Clam Anti-Virus ClamAV 0.94
Apple Mac OS X Server 10.5.8
Apple Mac OS X Server 10.5.7
Apple Mac OS X Server 10.5.6
Apple Mac OS X Server 10.5.5
Apple Mac OS X Server 10.5.4
Apple Mac OS X Server 10.5.3
Apple Mac OS X Server 10.5.2
Apple Mac OS X Server 10.5.1
Apple Mac OS X Server 10.5
Apple Mac OS X 10.5.8
Apple Mac OS X 10.5.7
Apple Mac OS X 10.5.6
Apple Mac OS X 10.5.5
Apple Mac OS X 10.5.4
Apple Mac OS X 10.5.3
Apple Mac OS X 10.5.2
Apple Mac OS X 10.5.1
Apple Mac OS X 10.5
Not Vulnerable: Clam Anti-Virus ClamAV 0.95


 

Privacy Statement
Copyright 2010, SecurityFocus