The MS-Expand file handling in Clam AntiVirus (ClamAV) before 0.86 allows remote attackers to cause a denial of service (file descriptor and memory consumption) via a crafted file that causes repeated errors in the cli_msexpand function.
Link | Tags |
---|---|
http://www.idefense.com/application/poi/display?id=276&type=vulnerabilities&flashstatus=true | third party advisory patch vendor advisory |
http://sourceforge.net/project/shownotes.php?release_id=336462 | patch |
http://www.debian.org/security/2005/dsa-737 | vendor advisory |