CVE-2007-4560

Publication date 28 August 2007

Last updated 24 July 2024


Ubuntu priority

clamav-milter in ClamAV before 0.91.2, when run in black hole mode, allows remote attackers to execute arbitrary commands via shell metacharacters that are used in a certain popen call, involving the "recipient field of sendmail."

Status

Package Ubuntu Release Status
clamav 8.04 LTS hardy
Not affected
7.10 gutsy
Not affected
7.04 feisty
Fixed 0.90.2-0ubuntu1.4
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper
Fixed 0.92.1~dfsg2-1.1~dapper2