First published: Wed Feb 23 2011(Updated: )
Double free vulnerability in the vba_read_project_strings function in vba_extract.c in libclamav in ClamAV before 0.97 might allow remote attackers to execute arbitrary code via crafted Visual Basic for Applications (VBA) data in a Microsoft Office document. NOTE: some of these details are obtained from third party information.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Clamav Clamav | <=0.96.5 | |
Clamav Clamav | =0.95.2 | |
Clamav Clamav | =0.86.2 | |
Clamav Clamav | =0.88.5 | |
Clamav Clamav | =0.02 | |
Clamav Clamav | =0.92 | |
Clamav Clamav | =0.95-rc2 | |
Clamav Clamav | =0.8-rc3 | |
Clamav Clamav | =0.15 | |
Clamav Clamav | =0.90-rc2 | |
Clamav Clamav | =0.75.1 | |
Clamav Clamav | =0.65 | |
Clamav Clamav | =0.88.7 | |
Clamav Clamav | =0.81 | |
Clamav Clamav | =0.86 | |
Clamav Clamav | =0.01 | |
Clamav Clamav | =0.92_p0 | |
Clamav Clamav | =0.85 | |
Clamav Clamav | =0.84 | |
Clamav Clamav | =0.3 | |
Clamav Clamav | =0.91.2_p0 | |
Clamav Clamav | =0.93.1 | |
Clamav Clamav | =0.90-rc1.1 | |
Clamav Clamav | =0.95.1 | |
Clamav Clamav | =0.93 | |
Clamav Clamav | =0.90 | |
Clamav Clamav | =0.70-rc | |
Clamav Clamav | =0.86-rc1 | |
Clamav Clamav | =0.68.1 | |
Clamav Clamav | =0.96.4 | |
Clamav Clamav | =0.03 | |
Clamav Clamav | =0.87.1 | |
Clamav Clamav | =0.9-rc1 | |
Clamav Clamav | =0.74 | |
Clamav Clamav | =0.93.3 | |
Clamav Clamav | =0.88 | |
Clamav Clamav | =0.91-rc1 | |
Clamav Clamav | =0.86.1 | |
Clamav Clamav | =0.71 | |
Clamav Clamav | =0.88.1 | |
Clamav Clamav | =0.60p | |
Clamav Clamav | =0.94 | |
Clamav Clamav | =0.80-rc | |
Clamav Clamav | =0.91.2 | |
Clamav Clamav | =0.96.3 | |
Clamav Clamav | =0.90.3 | |
Clamav Clamav | =0.85.1 | |
Clamav Clamav | =0.90-rc1 | |
Clamav Clamav | =0.96.2 | |
Clamav Clamav | =0.95-src2 | |
Clamav Clamav | =0.13 | |
Clamav Clamav | =0.81-rc1 | |
Clamav Clamav | =0.10 | |
Clamav Clamav | =0.94.2 | |
Clamav Clamav | =0.96.1 | |
Clamav Clamav | =0.95-src1 | |
Clamav Clamav | =0.80-rc3 | |
Clamav Clamav | =0.90.1_p0 | |
Clamav Clamav | =0.12 | |
Clamav Clamav | =0.88.7_p0 | |
Clamav Clamav | =0.23 | |
Clamav Clamav | =0.84-rc1 | |
Clamav Clamav | =0.90.3_p1 | |
Clamav Clamav | =0.80-rc2 | |
Clamav Clamav | =0.80-rc1 | |
Clamav Clamav | =0.95 | |
Clamav Clamav | =0.60 | |
Clamav Clamav | =0.88.2 | |
Clamav Clamav | =0.83 | |
Clamav Clamav | =0.20 | |
Clamav Clamav | =0.80-rc4 | |
Clamav Clamav | =0.90-rc3 | |
Clamav Clamav | =0.70 | |
Clamav Clamav | =0.88.4 | |
Clamav Clamav | =0.90.3_p0 | |
Clamav Clamav | =0.14 | |
Clamav Clamav | =0.24 | |
Clamav Clamav | =0.96-rc2 | |
Clamav Clamav | =0.90.2_p0 | |
Clamav Clamav | =0.66 | |
Clamav Clamav | =0.51 | |
Clamav Clamav | =0.52 | |
Clamav Clamav | =0.22 | |
Clamav Clamav | =0.72 | |
Clamav Clamav | =0.95-rc1 | |
Clamav Clamav | =0.91-rc2 | |
Clamav Clamav | =0.75 | |
Clamav Clamav | =0.05 | |
Clamav Clamav | =0.96 | |
Clamav Clamav | =0.91 | |
Clamav Clamav | =0.54 | |
Clamav Clamav | =0.96-rc1 | |
Clamav Clamav | =0.80 | |
Clamav Clamav | =0.87 | |
Clamav Clamav | =0.21 | |
Clamav Clamav | =0.84-rc2 | |
Clamav Clamav | =0.88.7_p1 | |
Clamav Clamav | =0.67-1 | |
Clamav Clamav | =0.14-pre | |
Clamav Clamav | =0.90.1 | |
Clamav Clamav | =0.91.1 | |
Clamav Clamav | =0.95.3 | |
Clamav Clamav | =0.88.3 | |
Clamav Clamav | =0.67 | |
Clamav Clamav | =0.92.1 | |
Clamav Clamav | =0.90.2 | |
Clamav Clamav | =0.68 | |
Clamav Clamav | =0.53 | |
Clamav Clamav | =0.93.2 | |
Clamav Clamav | =0.88.6 | |
Clamav Clamav | =0.94.1 | |
Clamav Clamav | =0.80_rc | |
Clamav Clamav | =0.82 | |
Clamav Clamav | =0.73 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.