ClamAV < 0.98.7 Multiple Vulnerabilities

medium Nessus Network Monitor Plugin ID 9260

Synopsis

The remote host is running an anti-virus application that is affected by multiple vulnerabilities.

Description

Versions of ClamAV earlier than 0.98.7 are potentially affected by the following vulnerabilities :

- An unspecified flaw exists in the 'pefromupx()' function in 'upx.c'. A remote attacker can exploit this flaw, via a specially crafted file, to crash the application. (CVE-2015-2170)
- An unspecified flaw exists in the 'yc_poly_emulator()' function in 'yc.c'. A remote attacker can exploit this flaw, via a specially crafted y0da cryptor file, to cause an infinite loop and application hang. (CVE-2015-2221)
- An unspecified flaw exists in the 'cli_scanpe()' function in 'pe.c'. A remote attacker can exploit this, via a specially crafted petite packer file, to crash the program. (CVE-2015-2222)
- An integer overflow condition exists in the bundled Henry Spencer regex library in the 'regcomp()' function in 'regcomp.c' due to improper validation of user-supplied input. A remote attacker can exploit this to cause a buffer overflow, resulting in a denial of service or the execution of arbitrary code. (CVE-2015-2305)
- An unspecified flaw exists when handling specially crafted '.xz' archive files. A remote attacker can exploit this to cause an infinite loop. (CVE-2015-2668)

Solution

Upgrade to ClamAV 0.98.7 or later.

See Also

http://blog.clamav.net/2015/04/clamav-0987-has-been-released.html

Plugin Details

Severity: Medium

ID: 9260

Family: Web Clients

Published: 4/22/2016

Updated: 3/6/2019

Nessus ID: 83352

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5.9

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P

CVSS v3

Risk Factor: Medium

Base Score: 5.6

Temporal Score: 5.4

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L

Temporal Vector: CVSS:3.0/E:X/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:cisco:clamav

Patch Publication Date: 4/29/2015

Vulnerability Publication Date: 2/4/2015

Reference Information

CVE: CVE-2015-2170, CVE-2015-2221, CVE-2015-2222, CVE-2015-2305, CVE-2015-2668

BID: 72611, 74472