CVE-2010-1639

Publication date 27 May 2010

Last updated 24 July 2024


Ubuntu priority

The cli_pdf function in libclamav/pdf.c in ClamAV before 0.96.1 allows remote attackers to cause a denial of service (crash) via a malformed PDF file, related to an inconsistency in the calculated stream length and the real stream length.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
clamav 10.04 LTS lucid
Fixed 0.96.1+dfsg-0ubuntu0.10.04.1
9.10 karmic
Fixed 0.95.3+dfsg-1ubuntu0.09.10.2
9.04 jaunty
Fixed 0.95.3+dfsg-1ubuntu0.09.04.2
8.04 LTS hardy
Fixed 0.95.3+dfsg-1ubuntu0.09.04~hardy2.4
6.06 LTS dapper
Fixed 0.95.3+dfsg-1ubuntu0.09.04~dapper4

References

Related Ubuntu Security Notices (USN)

    • USN-945-1
    • ClamAV vulnerabilities
    • 27 May 2010

Other references