Vulnerabilities > CVE-2009-1241 - Unspecified vulnerability in Clamav

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
clamav
nessus

Summary

Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypass detection of malware via a modified RAR archive.

Vulnerable Configurations

Part Description Count
Application
Clamav
119

Nessus

  • NASL familySuSE Local Security Checks
    NASL idSUSE_CLAMAV-6145.NASL
    descriptionClamAV update to version 0.95. This also fix some potential security bugs. (CVE-2009-1241)
    last seen2020-06-01
    modified2020-06-02
    plugin id36121
    published2009-04-09
    reporterThis script is Copyright (C) 2009-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/36121
    titleopenSUSE 10 Security Update : clamav (clamav-6145)
  • NASL familySuSE Local Security Checks
    NASL idSUSE9_12388.NASL
    descriptionClamAV update to version 0.95. This also fix some potential security bugs. (CVE-2009-1241)
    last seen2020-06-01
    modified2020-06-02
    plugin id41290
    published2009-09-24
    reporterThis script is Copyright (C) 2009-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/41290
    titleSuSE9 Security Update : ClamAV (YOU Patch Number 12388)
  • NASL familyMandriva Local Security Checks
    NASL idMANDRIVA_MDVSA-2009-097.NASL
    descriptionMultiple vulnerabilities has been found and corrected in clamav : Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypass detection of malware via a modified RAR archive (CVE-2009-1241). libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash) via a crafted EXE file that triggers a divide-by-zero error (CVE-2008-6680). libclamav/untar.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (infinite loop) via a crafted file that causes (1) clamd and (2) clamscan to hang (CVE-2009-1270). The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding (CVE-2009-1371). Stack-based buffer overflow in the cli_url_canon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted URL (CVE-2009-1372). Important notice about this upgrade: clamav-0.95+ bundles support for RAR v3 in libclamav which is a license violation as the RAR v3 license and the GPL license is not compatible. As a consequence to this Mandriva has been forced to remove the RAR v3 code. This update provides clamav 0.95.1, which is not vulnerable to these issues.
    last seen2020-06-01
    modified2020-06-02
    plugin id38165
    published2009-04-27
    reporterThis script is Copyright (C) 2009-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/38165
    titleMandriva Linux Security Advisory : clamav (MDVSA-2009:097)
  • NASL familyMacOS X Local Security Checks
    NASL idMACOSX_SECUPD2009-005.NASL
    descriptionThe remote host is running a version of Mac OS X 10.5 or 10.4 that does not have Security Update 2009-005 applied. This security update contains fixes for the following products : - Alias Manager - CarbonCore - ClamAV - ColorSync - CoreGraphics - CUPS - Flash Player plug-in - ImageIO - Launch Services - MySQL - PHP - SMB - Wiki Server
    last seen2020-06-01
    modified2020-06-02
    plugin id40945
    published2009-09-11
    reporterThis script is Copyright (C) 2009-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/40945
    titleMac OS X Multiple Vulnerabilities (Security Update 2009-005)
  • NASL familySuSE Local Security Checks
    NASL idSUSE_11_1_CLAMAV-090407.NASL
    descriptionClamAV update to version 0.95. This also fix some potential security bugs. (CVE-2009-1241)
    last seen2020-06-01
    modified2020-06-02
    plugin id40199
    published2009-07-21
    reporterThis script is Copyright (C) 2009-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/40199
    titleopenSUSE Security Update : clamav (clamav-750)
  • NASL familyMandriva Local Security Checks
    NASL idMANDRIVA_MDVSA-2009-327.NASL
    descriptionMultiple vulnerabilities has been found and corrected in clamav : Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypass detection of malware via a modified RAR archive (CVE-2009-1241). libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash) via a crafted EXE file that triggers a divide-by-zero error (CVE-2008-6680). libclamav/untar.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (infinite loop) via a crafted file that causes (1) clamd and (2) clamscan to hang (CVE-2009-1270). The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding (CVE-2009-1371). Stack-based buffer overflow in the cli_url_canon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted URL (CVE-2009-1372). Important notice about this upgrade: clamav-0.95+ bundles support for RAR v3 in libclamav which is a license violation as the RAR v3 license and the GPL license is not compatible. As a consequence to this Mandriva has been forced to remove the RAR v3 code. Packages for 2008.0 are provided for Corporate Desktop 2008.0 customers This update provides clamav 0.95.2, which is not vulnerable to these issues. Additionally klamav-0.46 is being provided that has support for clamav-0.95+.
    last seen2020-06-01
    modified2020-06-02
    plugin id43076
    published2009-12-09
    reporterThis script is Copyright (C) 2009-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/43076
    titleMandriva Linux Security Advisory : clamav (MDVSA-2009:327)
  • NASL familyMisc.
    NASL idCLAMAV_0_95.NASL
    descriptionAccording to its version, the clamd antivirus daemon on the remote host is earlier than 0.95. Such versions are affected by multiple vulnerabilities : - A failure to handle certain malformed
    last seen2020-06-01
    modified2020-06-02
    plugin id36075
    published2009-04-02
    reporterThis script is Copyright (C) 2009-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/36075
    titleClamAV < 0.95 Scan Evasion
  • NASL familySuSE Local Security Checks
    NASL idSUSE_11_0_CLAMAV-090408.NASL
    descriptionClamAV update to version 0.95. This also fix some potential security bugs. (CVE-2009-1241)
    last seen2020-06-01
    modified2020-06-02
    plugin id39934
    published2009-07-21
    reporterThis script is Copyright (C) 2009-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/39934
    titleopenSUSE Security Update : clamav (clamav-750)
  • NASL familySuSE Local Security Checks
    NASL idSUSE_CLAMAV-6144.NASL
    descriptionClamAV update to version 0.95. This also fix some potential security bugs. (CVE-2009-1241)
    last seen2020-06-01
    modified2020-06-02
    plugin id41486
    published2009-09-24
    reporterThis script is Copyright (C) 2009-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/41486
    titleSuSE 10 Security Update : ClamAV (ZYPP Patch Number 6144)
  • NASL familySuSE Local Security Checks
    NASL idSUSE_11_CLAMAV-090407.NASL
    descriptionClamAV update to version 0.95. This also fix some potential security bugs. (CVE-2009-1241)
    last seen2020-06-01
    modified2020-06-02
    plugin id41373
    published2009-09-24
    reporterThis script is Copyright (C) 2009-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/41373
    titleSuSE 11 Security Update : ClamAV (SAT Patch Number 749)