Vulnerabilities > CVE-2004-0270 - Denial Of Service vulnerability in Clam Anti-Virus Clamav 0.65

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
clam-anti-virus
nessus
exploit available

Summary

libclamav in Clam AntiVirus 0.65 allows remote attackers to cause a denial of service (crash) via a uuencoded e-mail message with an invalid line length (e.g., a lowercase character), which causes an assert error in clamd that terminates the calling program.

Vulnerable Configurations

Part Description Count
Application
Clam_Anti-Virus
1

Exploit-Db

descriptionClamAV Daemon 0.65 Malformed UUEncoded Message Denial Of Service Vulnerability. CVE-2004-0270. Dos exploit for linux platform
idEDB-ID:23667
last seen2016-02-02
modified2004-02-09
published2004-02-09
reporterOliver Eikemeier
sourcehttps://www.exploit-db.com/download/23667/
titleClamAV Daemon 0.65 Malformed UUEncoded Message Denial of Service Vulnerability

Nessus

  • NASL familyFreeBSD Local Security Checks
    NASL idFREEBSD_PKG_74A9541D5D6C11D880E30020ED76EF5A.NASL
    descriptionclamav will exit when a programming assertion is not met. A malformed uuencoded message can trigger this assertion, allowing an attacker to trivially crash clamd or other components of clamav.
    last seen2020-06-01
    modified2020-06-02
    plugin id36576
    published2009-04-23
    reporterThis script is Copyright (C) 2009-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/36576
    titleFreeBSD : clamav remote denial-of-service (74a9541d-5d6c-11d8-80e3-0020ed76ef5a)
  • NASL familyFreeBSD Local Security Checks
    NASL idFREEBSD_CLAMAV_065_7.NASL
    descriptionThe following package needs to be updated: clamav
    last seen2016-09-26
    modified2011-10-03
    plugin id12528
    published2004-07-06
    reporterTenable
    sourcehttps://www.tenable.com/plugins/index.php?view=single&id=12528
    titleFreeBSD : clamav remote denial-of-service (24)