First published: Wed Nov 06 2019(Updated: )
There is a possible heap overflow in libclamav/fsg.c before 0.100.0.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Clamav Clamav | <0.100.0 | |
Debian Debian Linux | =8.0 | |
Debian Debian Linux | =9.0 | |
Debian Debian Linux | =10.0 | |
debian/clamav | 0.103.10+dfsg-0+deb11u1 1.0.5+dfsg-1~deb12u1 1.3.1+dfsg-4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2007-0899 is critical with a score of 9.8.
The affected software for CVE-2007-0899 includes Clamav versions before 0.100.0 and Debian Linux versions 8.0, 9.0, and 10.0.
To fix the CVE-2007-0899 vulnerability, update Clamav to version 0.100.0 or later and update Debian Linux to the specified remedial versions.
The CWE classification for CVE-2007-0899 is CWE-787: Out-of-bounds Write.
More information about CVE-2007-0899 can be found at https://security-tracker.debian.org/tracker/CVE-2007-0899.