CVE-2008-5314

Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the cli_check_jpeg_exploit, jpeg_check_photoshop, and jpeg_check_photoshop_8bim functions.
References
Link Resource
http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html
http://lists.opensuse.org/opensuse-security-announce/2008-12/msg00003.html
http://lurker.clamav.net/message/20081126.150241.55b1e092.en.html
http://osvdb.org/50363
http://secunia.com/advisories/32926
http://secunia.com/advisories/32936
http://secunia.com/advisories/33016
http://secunia.com/advisories/33195
http://secunia.com/advisories/33317
http://secunia.com/advisories/33937
http://security.gentoo.org/glsa/glsa-200812-21.xml
http://sourceforge.net/project/shownotes.php?group_id=86638&release_id=643134
http://support.apple.com/kb/HT3438
http://www.debian.org/security/2008/dsa-1680
http://www.mandriva.com/security/advisories?name=MDVSA-2008:239
http://www.openwall.com/lists/oss-security/2008/12/01/8
http://www.securityfocus.com/bid/32555
http://www.securitytracker.com/id?1021296
http://www.ubuntu.com/usn/usn-684-1
http://www.vupen.com/english/advisories/2008/3311
http://www.vupen.com/english/advisories/2009/0422
https://exchange.xforce.ibmcloud.com/vulnerabilities/46985
https://www.exploit-db.com/exploits/7330
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1266 Exploit
http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html
http://lists.opensuse.org/opensuse-security-announce/2008-12/msg00003.html
http://lurker.clamav.net/message/20081126.150241.55b1e092.en.html
http://osvdb.org/50363
http://secunia.com/advisories/32926
http://secunia.com/advisories/32936
http://secunia.com/advisories/33016
http://secunia.com/advisories/33195
http://secunia.com/advisories/33317
http://secunia.com/advisories/33937
http://security.gentoo.org/glsa/glsa-200812-21.xml
http://sourceforge.net/project/shownotes.php?group_id=86638&release_id=643134
http://support.apple.com/kb/HT3438
http://www.debian.org/security/2008/dsa-1680
http://www.mandriva.com/security/advisories?name=MDVSA-2008:239
http://www.openwall.com/lists/oss-security/2008/12/01/8
http://www.securityfocus.com/bid/32555
http://www.securitytracker.com/id?1021296
http://www.ubuntu.com/usn/usn-684-1
http://www.vupen.com/english/advisories/2008/3311
http://www.vupen.com/english/advisories/2009/0422
https://exchange.xforce.ibmcloud.com/vulnerabilities/46985
https://www.exploit-db.com/exploits/7330
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1266 Exploit
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:clam_anti-virus:clamav:*:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.70:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.71:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.72:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.73:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.74:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.75:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.75.1:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.80:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.80:rc:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.80:rc2:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.80:rc3:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.80:rc4:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.81:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.81:rc1:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.82:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.83:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.84:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.84:rc1:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.84:rc2:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.85:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.85.1:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.86:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.86:rc1:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.86.1:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.86.2:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.87:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.87.1:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.88:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.88.1:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.88.2:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.88.3:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.88.4:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.88.5:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.88.6:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.88.7:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.90:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.90.1:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.90.2:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.90.3:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.91:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.91.1:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.91.2:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.92:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.92.1:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.93:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.93.1:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.93.3:*:*:*:*:*:*:*
cpe:2.3:a:clam_anti-virus:clamav:0.94:*:*:*:*:*:*:*

History

21 Nov 2024, 00:53

Type Values Removed Values Added
References () http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html - () http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html -
References () http://lists.opensuse.org/opensuse-security-announce/2008-12/msg00003.html - () http://lists.opensuse.org/opensuse-security-announce/2008-12/msg00003.html -
References () http://lurker.clamav.net/message/20081126.150241.55b1e092.en.html - () http://lurker.clamav.net/message/20081126.150241.55b1e092.en.html -
References () http://osvdb.org/50363 - () http://osvdb.org/50363 -
References () http://secunia.com/advisories/32926 - () http://secunia.com/advisories/32926 -
References () http://secunia.com/advisories/32936 - () http://secunia.com/advisories/32936 -
References () http://secunia.com/advisories/33016 - () http://secunia.com/advisories/33016 -
References () http://secunia.com/advisories/33195 - () http://secunia.com/advisories/33195 -
References () http://secunia.com/advisories/33317 - () http://secunia.com/advisories/33317 -
References () http://secunia.com/advisories/33937 - () http://secunia.com/advisories/33937 -
References () http://security.gentoo.org/glsa/glsa-200812-21.xml - () http://security.gentoo.org/glsa/glsa-200812-21.xml -
References () http://sourceforge.net/project/shownotes.php?group_id=86638&release_id=643134 - () http://sourceforge.net/project/shownotes.php?group_id=86638&release_id=643134 -
References () http://support.apple.com/kb/HT3438 - () http://support.apple.com/kb/HT3438 -
References () http://www.debian.org/security/2008/dsa-1680 - () http://www.debian.org/security/2008/dsa-1680 -
References () http://www.mandriva.com/security/advisories?name=MDVSA-2008:239 - () http://www.mandriva.com/security/advisories?name=MDVSA-2008:239 -
References () http://www.openwall.com/lists/oss-security/2008/12/01/8 - () http://www.openwall.com/lists/oss-security/2008/12/01/8 -
References () http://www.securityfocus.com/bid/32555 - () http://www.securityfocus.com/bid/32555 -
References () http://www.securitytracker.com/id?1021296 - () http://www.securitytracker.com/id?1021296 -
References () http://www.ubuntu.com/usn/usn-684-1 - () http://www.ubuntu.com/usn/usn-684-1 -
References () http://www.vupen.com/english/advisories/2008/3311 - () http://www.vupen.com/english/advisories/2008/3311 -
References () http://www.vupen.com/english/advisories/2009/0422 - () http://www.vupen.com/english/advisories/2009/0422 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/46985 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/46985 -
References () https://www.exploit-db.com/exploits/7330 - () https://www.exploit-db.com/exploits/7330 -
References () https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1266 - Exploit () https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1266 - Exploit

Information

Published : 2008-12-03 17:30

Updated : 2024-11-21 00:53


NVD link : CVE-2008-5314

Mitre link : CVE-2008-5314

CVE.ORG link : CVE-2008-5314


JSON object : View

Products Affected

clam_anti-virus

  • clamav
CWE
CWE-399

Resource Management Errors