5
CVSSv2

CVE-2004-0270

Published: 23/11/2004 Updated: 10/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

libclamav in Clam AntiVirus 0.65 allows remote malicious users to cause a denial of service (crash) via a uuencoded e-mail message with an invalid line length (e.g., a lowercase character), which causes an assert error in clamd that terminates the calling program.

Vulnerable Product Search on Vulmon Subscribe to Product

clam anti-virus clamav 0.65

Exploits

source: wwwsecurityfocuscom/bid/9610/info A problem in the handling of specially crafted UUEncoded messages has been identified in ClamAV Because of this, an attacker may prevent the delivery of e-mail to users Save the following file to ~/clamtestmbox: From - begin 644 byebye byebye end Then do: # clamscan --mbox -v ~/clamtestmb ...