CVE-2007-0897: High severity Clam Anti-Virus clamav vulnerability
Clam AntiVirus ClamAV before 0.90 does not close open file descriptors under certain conditions, which allows remote attackers to cause a denial of service (file descriptor consumption and failed scans) via CAB archives with a cabinet header record length of zero, which causes a function to return without closing a file descriptor.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0897?
CVE-2007-0897 has a medium severity rating as it can lead to a denial of service due to file descriptor consumption.
How do I fix CVE-2007-0897?
To fix CVE-2007-0897, you should upgrade ClamAV to version 0.90 or later.
What software versions are affected by CVE-2007-0897?
CVE-2007-0897 affects ClamAV versions prior to 0.90, including various versions like 0.84 and earlier.
What type of attack does CVE-2007-0897 enable?
CVE-2007-0897 allows remote attackers to conduct denial of service attacks through specially crafted CAB archives.
Is there a workaround for CVE-2007-0897 if I can't update?
A temporary workaround for CVE-2007-0897 is to monitor and limit the file types being scanned by ClamAV.