Уязвимость CVE-2006-1615: Информация

Описание

Multiple format string vulnerabilities in the logging code in Clam AntiVirus (ClamAV) before 0.88.1 might allow remote attackers to execute arbitrary code. NOTE: as of 20060410, it is unclear whether this is a vulnerability, as there is some evidence that the arguments are actually being sanitized properly.

Важность: CRITICAL (10,0)

Опубликовано: 7 апреля 2006 г.
Изменено: 20 июля 2017 г.
Идентификатор типа ошибки: CWE-134

Ссылки на рекомендации, решения и инструменты

Ссылка
Ресурс
http://sourceforge.net/project/shownotes.php?release_id=407078&group_id=86638
  • Patch
DSA-1024
  • Patch
  • Vendor Advisory
17388
  • Patch
19534
  • Patch
  • Vendor Advisory
19536
  • Patch
  • Vendor Advisory
GLSA-200604-06
  • Patch
  • Vendor Advisory
2006-0020
    19570
    • Patch
    • Vendor Advisory
    SUSE-SA:2006:020
    • Patch
    • Vendor Advisory
    19608
    • Patch
    • Vendor Advisory
    19564
    • Patch
    • Vendor Advisory
    19567
    • Vendor Advisory
    24458
      APPLE-SA-2006-05-11
        TA06-132A
        • US Government Resource
        20077
        • Vendor Advisory
        17951
          http://up2date.astaro.com/2006/05/low_up2date_6202.html
            23719
            • Vendor Advisory
            MDKSA-2006:067
              ADV-2006-1258
              • Vendor Advisory
              ADV-2006-1779
              • Vendor Advisory
              clamav-output-format-string(25661)
                  1. Конфигурация 1

                    cpe:2.3:a:clamav:clamav:0.86.2:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.02:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.8:rc3:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.15:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.75.1:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.65:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.81:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.86:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.01:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.85:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.84:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.3:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.70:rc:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.86:rc1:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.68.1:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.03:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.87.1:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.74:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.86.1:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.71:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.60p:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.80:rc:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.85.1:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.13:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.81:rc1:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.10:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.80:rc3:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.12:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.23:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.84:rc1:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.80:rc2:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.80:rc1:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.60:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.83:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.20:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.80:rc4:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.70:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.14:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.24:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.66:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.51:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.52:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.22:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.72:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.75:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.05:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.54:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.80:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.87:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.21:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.84:rc2:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.67-1:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.14:pre:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.67:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.68:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.53:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:*:*:*:*:*:*:*:*
                    End including
                    0.88

                    cpe:2.3:a:clamav:clamav:0.82:*:*:*:*:*:*:*

                    cpe:2.3:a:clamav:clamav:0.73:*:*:*:*:*:*:*