First published: Tue Mar 30 2004(Updated: )
The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 0.70 allows local users to execute arbitrary commands via shell metacharacters in a file name.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Clam Anti-virus Clamav | =0.65 | |
Clam Anti-virus Clamav | =0.68 | |
Clam Anti-virus Clamav | =0.67 | |
Clam Anti-virus Clamav | =0.54 | |
Clam Anti-virus Clamav | =0.53 | |
Clam Anti-virus Clamav | =0.60 | |
Clam Anti-virus Clamav | =0.68.1 | |
Clam Anti-virus Clamav | =0.51 | |
Clam Anti-virus Clamav | =0.52 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.