CVE-2009-1372: Buffer Overflow
Stack-based buffer overflow in the cliurlcanon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted URL.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1372?
CVE-2009-1372 has been classified as a moderate severity vulnerability due to its potential to cause a denial of service and possibly execute arbitrary code.
How do I fix CVE-2009-1372?
To mitigate CVE-2009-1372, you should upgrade to ClamAV version 0.95.1 or later, as it addresses this vulnerability.
What systems are affected by CVE-2009-1372?
CVE-2009-1372 affects various versions of ClamAV prior to 0.95.1, including versions 0.86.2, 0.88.5, and others listed in the vulnerability report.
What type of vulnerability is CVE-2009-1372?
CVE-2009-1372 is a stack-based buffer overflow vulnerability found in the cli_url_canon function of ClamAV.
What are the potential impacts of CVE-2009-1372?
The impacts of CVE-2009-1372 can include application crashes and the potential for remote attackers to execute arbitrary code.