CVE-2004-1909: Low severity clam anti-virus clamav vulnerability
Published Dec 31, 2004
·Updated
Claim Anti-Virus (ClamAV) 0.68 and earlier allows remote attackers to cause a denial of service (crash) via certain RAR archives, such as those generated by the Beagle/Bagle worm.
Affected Software
2 affected components
Clam Anti-Virus clamav=0.65
Clam Anti-Virus clamav=0.67
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
May 10, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1909?
CVE-2004-1909 is classified as a denial of service vulnerability.
2
How do I fix CVE-2004-1909?
To fix CVE-2004-1909, upgrade to ClamAV version 0.68 or later.
3
Which versions of ClamAV are affected by CVE-2004-1909?
CVE-2004-1909 affects ClamAV versions 0.65, 0.67, and earlier.
4
What type of attack does CVE-2004-1909 involve?
CVE-2004-1909 involves a denial of service attack through malicious RAR archives.
5
Can CVE-2004-1909 be exploited remotely?
Yes, CVE-2004-1909 can be exploited by remote attackers.