CVE-2017-11423
18.07.2017, 20:29
The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted CAB file.Enginsight
Vendor | Product | Version |
---|---|---|
libmspack_project | libmspack | 0.5:alpha |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
clamav |
| ||||||||||||||||||||||||||||
libmspack |
|
Common Weakness Enumeration
References