CVE-2007-6336

Publication date 20 December 2007

Last updated 24 July 2024


Ubuntu priority

Off-by-one error in ClamAV before 0.92 allows remote attackers to execute arbitrary code via a crafted MS-ZIP compressed CAB file.

Status

Package Ubuntu Release Status
clamav 8.04 LTS hardy
Not affected
7.10 gutsy
Fixed 0.92.1~dfsg2-1.1~gutsy3.1
7.04 feisty
Fixed 0.92.1~dfsg2-1.1~feisty3.1
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper
Fixed 0.92.1~dfsg2-1.1~dapper3.1