First published: Wed Sep 01 2004(Updated: )
libclamav in Clam AntiVirus 0.65 allows remote attackers to cause a denial of service (crash) via a uuencoded e-mail message with an invalid line length (e.g., a lowercase character), which causes an assert error in clamd that terminates the calling program.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ClamAV | =0.65 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0270 is classified as a denial of service vulnerability.
To fix CVE-2004-0270, upgrade Clam AntiVirus to a version later than 0.65.
Clam AntiVirus version 0.65 is affected by CVE-2004-0270.
CVE-2004-0270 allows remote attackers to send a specially crafted uuencoded email that causes a program crash.
The successful exploit of CVE-2004-0270 can terminate the clamd process, leading to service disruption.