CVE-2008-5314 Information
Description
Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file related to the cli_check_jpeg_exploit jpeg_check_photoshop and jpeg_check_photoshop_8bim functions.
Reference
http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html http://lists.opensuse.org/opensuse-security-announce/2008-12/msg00003.html http://lurker.clamav.net/message/20081126.150241.55b1e092.en.html http://osvdb.org/50363 http://secunia.com/advisories/32926 http://secunia.com/advisories/32936 http://secunia.com/advisories/33016 http://secunia.com/advisories/33195 http://secunia.com/advisories/33317 http://secunia.com/advisories/33937 http://security.gentoo.org/glsa/glsa-200812-21.xml http://sourceforge.net/project/shownotes.php?group_id=86638&release_id=643134 http://support.apple.com/kb/HT3438 http://www.debian.org/security/2008/dsa-1680 http://www.mandriva.com/security/advisories?name=MDVSA-2008:239 http://www.openwall.com/lists/oss-security/2008/12/01/8 http://www.securityfocus.com/bid/32555 http://www.securitytracker.com/id?1021296 http://www.ubuntu.com/usn/usn-684-1 http://www.vupen.com/english/advisories/2008/3311 http://www.vupen.com/english/advisories/2009/0422 https://exchange.xforce.ibmcloud.com/vulnerabilities/46985 https://www.exploit-db.com/exploits/7330 https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1266
Share on: