CVE-2007-6337: Critical severity Gentoo Linux vulnerability
Published Dec 31, 2007
·Updated
Unspecified vulnerability in the bzip2 decompression algorithm in nsis/bzlibprivate.h in ClamAV before 0.92 has unknown impact and remote attack vectors.
Affected Software
2 affected components
Gentoo Linux
Clam Anti-Virus clamav=0.91.2
Remediation
Patch Available
Event History
Dec 31, 2007
CVE Published
07:46 PM
Data Sourced
07:46 PM
DescriptionWeaknessAffected Software
Jan 1, 2008
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-6337?
The severity of CVE-2007-6337 is currently unknown due to unspecified details of the vulnerability.
2
Which versions of ClamAV are affected by CVE-2007-6337?
CVE-2007-6337 affects ClamAV versions prior to 0.92, specifically 0.91.2.
3
What could be the impact of CVE-2007-6337 on users?
The impact of CVE-2007-6337 is unknown, but it may allow remote attacks due to an issue in the bzip2 decompression algorithm.
4
How do I resolve CVE-2007-6337?
To resolve CVE-2007-6337, users should upgrade to ClamAV version 0.92 or higher.
5
Is there a specific platform mentioned for CVE-2007-6337?
Yes, ClamAV versions prior to 0.92 are potentially affected on any platform that runs this software.