CVE-2007-2650

Publication date 14 May 2007

Last updated 24 July 2024


Ubuntu priority

The OLE2 parser in Clam AntiVirus (ClamAV) allows remote attackers to cause a denial of service (resource consumption) via an OLE2 file with (1) a large property size or (2) a loop in the FAT file block chain that triggers an infinite loop, as demonstrated via a crafted DOC file.

Status

Package Ubuntu Release Status
clamav 7.10 gutsy
Fixed 0.90.3-1ubuntu1
7.04 feisty
Fixed 0.90.2-0ubuntu1.3
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper
Fixed 0.92~dfsg-2~dapper1