CVE-2010-4260

Multiple unspecified vulnerabilities in pdf.c in libclamav in ClamAV before 0.96.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document, aka (1) "bb #2358" and (2) "bb #2396."
References
Link Resource
http://git.clamav.net/gitweb?p=clamav-devel.git%3Ba=blob_plain%3Bf=ChangeLog%3Bhb=master
http://lists.apple.com/archives/security-announce/2011/Mar/msg00006.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/051905.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052401.html
http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00006.html
http://openwall.com/lists/oss-security/2010/12/03/1
http://openwall.com/lists/oss-security/2010/12/03/3
http://openwall.com/lists/oss-security/2010/12/03/6
http://secunia.com/advisories/42426 Vendor Advisory
http://secunia.com/advisories/42523 Vendor Advisory
http://secunia.com/advisories/42555
http://secunia.com/advisories/42720
http://support.apple.com/kb/HT4581
http://www.mandriva.com/security/advisories?name=MDVSA-2010:249
http://www.securityfocus.com/bid/45152
http://www.securitytracker.com/id?1024818
http://www.ubuntu.com/usn/USN-1031-1
http://www.vupen.com/english/advisories/2010/3135 Vendor Advisory
http://www.vupen.com/english/advisories/2010/3137 Vendor Advisory
http://www.vupen.com/english/advisories/2010/3185
http://xorl.wordpress.com/2010/12/06/cve-2010-4260-clamav-multiple-pdf-vulnerabilities/
https://bugzilla.redhat.com/show_bug.cgi?id=659861
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=2358
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=2396
http://git.clamav.net/gitweb?p=clamav-devel.git%3Ba=blob_plain%3Bf=ChangeLog%3Bhb=master
http://lists.apple.com/archives/security-announce/2011/Mar/msg00006.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/051905.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052401.html
http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00006.html
http://openwall.com/lists/oss-security/2010/12/03/1
http://openwall.com/lists/oss-security/2010/12/03/3
http://openwall.com/lists/oss-security/2010/12/03/6
http://secunia.com/advisories/42426 Vendor Advisory
http://secunia.com/advisories/42523 Vendor Advisory
http://secunia.com/advisories/42555
http://secunia.com/advisories/42720
http://support.apple.com/kb/HT4581
http://www.mandriva.com/security/advisories?name=MDVSA-2010:249
http://www.securityfocus.com/bid/45152
http://www.securitytracker.com/id?1024818
http://www.ubuntu.com/usn/USN-1031-1
http://www.vupen.com/english/advisories/2010/3135 Vendor Advisory
http://www.vupen.com/english/advisories/2010/3137 Vendor Advisory
http://www.vupen.com/english/advisories/2010/3185
http://xorl.wordpress.com/2010/12/06/cve-2010-4260-clamav-multiple-pdf-vulnerabilities/
https://bugzilla.redhat.com/show_bug.cgi?id=659861
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=2358
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=2396
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:clamav:clamav:*:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.01:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.02:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.3:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.03:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.05:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.8:rc3:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.9:rc1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.10:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.12:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.13:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.14:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.14:pre:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.15:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.20:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.21:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.22:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.23:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.24:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.51:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.52:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.53:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.54:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.60:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.60p:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.65:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.66:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.67:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.67-1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.68:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.68.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.70:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.70:rc:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.71:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.72:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.73:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.74:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.75:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.75.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.80:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.80:rc:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.80:rc1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.80:rc2:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.80:rc3:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.80:rc4:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.80_rc:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.81:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.81:rc1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.82:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.83:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.84:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.84:rc1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.84:rc2:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.85:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.85.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.86:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.86:rc1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.86.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.86.2:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.87:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.87.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88.2:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88.3:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88.4:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88.5:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88.6:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88.7:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88.7_p0:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.88.7_p1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90:rc1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90:rc1.1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90:rc2:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90:rc3:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90.1_p0:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90.2:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90.2_p0:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90.3:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90.3_p0:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.90.3_p1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.91:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.91:rc1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.91:rc2:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.91.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.91.2:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.91.2_p0:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.92:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.92.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.92_p0:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.93:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.93.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.93.2:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.93.3:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.94:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.94.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.94.2:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.95:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.95:rc1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.95:rc2:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.95:src1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.95:src2:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.95.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.95.2:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.95.3:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.96:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.96:rc1:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.96:rc2:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.96.1:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.96.2:*:*:*:*:*:*:*
cpe:2.3:a:clamav:clamav:0.96.3:*:*:*:*:*:*:*

History

21 Nov 2024, 01:20

Type Values Removed Values Added
References () http://git.clamav.net/gitweb?p=clamav-devel.git%3Ba=blob_plain%3Bf=ChangeLog%3Bhb=master - () http://git.clamav.net/gitweb?p=clamav-devel.git%3Ba=blob_plain%3Bf=ChangeLog%3Bhb=master -
References () http://lists.apple.com/archives/security-announce/2011/Mar/msg00006.html - () http://lists.apple.com/archives/security-announce/2011/Mar/msg00006.html -
References () http://lists.fedoraproject.org/pipermail/package-announce/2010-December/051905.html - () http://lists.fedoraproject.org/pipermail/package-announce/2010-December/051905.html -
References () http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052401.html - () http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052401.html -
References () http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00006.html - () http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00006.html -
References () http://openwall.com/lists/oss-security/2010/12/03/1 - () http://openwall.com/lists/oss-security/2010/12/03/1 -
References () http://openwall.com/lists/oss-security/2010/12/03/3 - () http://openwall.com/lists/oss-security/2010/12/03/3 -
References () http://openwall.com/lists/oss-security/2010/12/03/6 - () http://openwall.com/lists/oss-security/2010/12/03/6 -
References () http://secunia.com/advisories/42426 - Vendor Advisory () http://secunia.com/advisories/42426 - Vendor Advisory
References () http://secunia.com/advisories/42523 - Vendor Advisory () http://secunia.com/advisories/42523 - Vendor Advisory
References () http://secunia.com/advisories/42555 - () http://secunia.com/advisories/42555 -
References () http://secunia.com/advisories/42720 - () http://secunia.com/advisories/42720 -
References () http://support.apple.com/kb/HT4581 - () http://support.apple.com/kb/HT4581 -
References () http://www.mandriva.com/security/advisories?name=MDVSA-2010:249 - () http://www.mandriva.com/security/advisories?name=MDVSA-2010:249 -
References () http://www.securityfocus.com/bid/45152 - () http://www.securityfocus.com/bid/45152 -
References () http://www.securitytracker.com/id?1024818 - () http://www.securitytracker.com/id?1024818 -
References () http://www.ubuntu.com/usn/USN-1031-1 - () http://www.ubuntu.com/usn/USN-1031-1 -
References () http://www.vupen.com/english/advisories/2010/3135 - Vendor Advisory () http://www.vupen.com/english/advisories/2010/3135 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2010/3137 - Vendor Advisory () http://www.vupen.com/english/advisories/2010/3137 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2010/3185 - () http://www.vupen.com/english/advisories/2010/3185 -
References () http://xorl.wordpress.com/2010/12/06/cve-2010-4260-clamav-multiple-pdf-vulnerabilities/ - () http://xorl.wordpress.com/2010/12/06/cve-2010-4260-clamav-multiple-pdf-vulnerabilities/ -
References () https://bugzilla.redhat.com/show_bug.cgi?id=659861 - () https://bugzilla.redhat.com/show_bug.cgi?id=659861 -
References () https://wwws.clamav.net/bugzilla/show_bug.cgi?id=2358 - () https://wwws.clamav.net/bugzilla/show_bug.cgi?id=2358 -
References () https://wwws.clamav.net/bugzilla/show_bug.cgi?id=2396 - () https://wwws.clamav.net/bugzilla/show_bug.cgi?id=2396 -

Information

Published : 2010-12-07 13:53

Updated : 2024-11-21 01:20


NVD link : CVE-2010-4260

Mitre link : CVE-2010-4260

CVE.ORG link : CVE-2010-4260


JSON object : View

Products Affected

clamav

  • clamav