CVE-2008-5314

Publication date 3 December 2008

Last updated 24 July 2024


Ubuntu priority

Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the cli_check_jpeg_exploit, jpeg_check_photoshop, and jpeg_check_photoshop_8bim functions.

Status

Package Ubuntu Release Status
clamav 8.10 intrepid
Fixed 0.94.dfsg.2-1ubuntu0.1
8.04 LTS hardy
Fixed 0.92.1~dfsg2-1.1ubuntu0.4
7.10 gutsy
Fixed 0.92.1~dfsg2-1.1~gutsy3.1ubuntu2
6.06 LTS dapper
Fixed 0.92.1~dfsg2-1.1~dapper3.3

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
clamav

References

Related Ubuntu Security Notices (USN)

    • USN-684-1
    • ClamAV vulnerability
    • 2 December 2008

Other references