Package: clamav
Severity: important
Tags: security

Hi

The following CVE[0] has been issued against clamav.

CVE-2007-6029:

Unspecified vulnerability in ClamAV 0.91.1 and 0.91.2 allows remote
attackers to execute arbitrary code via a crafted e-mail message. NOTE:
this information is based upon a vague advisory by a vulnerability
information sales organization that does not coordinate with vendors or
release actionable advisories. A CVE has been assigned for tracking
purposes, but duplicates with other CVEs are difficult to determine.


At this point, I do not know, if clamav is vulnerable or how it can be
triggered. Maybe you or upstream have any idea? Keeping the information
in the BTS is probably a good idea for tracking purpose.

Cheers
Steffen

[0]: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6029



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to