CVE-2010-1639
Published: 27 May 2010
The cli_pdf function in libclamav/pdf.c in ClamAV before 0.96.1 allows remote attackers to cause a denial of service (crash) via a malformed PDF file, related to an inconsistency in the calculated stream length and the real stream length.
Priority
Status
Package | Release | Status |
---|---|---|
clamav Launchpad, Ubuntu, Debian |
dapper |
Released
(0.95.3+dfsg-1ubuntu0.09.04~dapper4)
|
hardy |
Released
(0.95.3+dfsg-1ubuntu0.09.04~hardy2.4)
|
|
jaunty |
Released
(0.95.3+dfsg-1ubuntu0.09.04.2)
|
|
karmic |
Released
(0.95.3+dfsg-1ubuntu0.09.10.2)
|
|
lucid |
Released
(0.96.1+dfsg-0ubuntu0.10.04.1)
|
|
upstream |
Released
(0.96.1)
|