CVE-2007-6335

Publication date 20 December 2007

Last updated 24 July 2024


Ubuntu priority

Integer overflow in libclamav in ClamAV before 0.92 allows remote attackers to execute arbitrary code via a crafted MEW packed PE file, which triggers a heap-based buffer overflow.

Status

Package Ubuntu Release Status
clamav 8.04 LTS hardy
Not affected
7.10 gutsy
Fixed 0.92.1~dfsg2-1.1~gutsy3.1
7.04 feisty
Fixed 0.92.1~dfsg2-1.1~feisty3.1
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper
Fixed 0.92.1~dfsg2-1.1~dapper3.1