CVE-2007-0897
moderate-risk
Published 2007-02-16
Clam AntiVirus ClamAV before 0.90 does not close open file descriptors under certain conditions, which allows remote attackers to cause a denial of service (file descriptor consumption and failed scans) via CAB archives with a cabinet header record length of zero, which causes a function to return without closing a file descriptor.
Do I need to act?
~
7.9% chance of exploitation in next 30 days
EPSS score — moderate exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
7
CVSS 7.5/10
High
NETWORK
/ LOW complexity
Affected Products (3)
References (40)
Broken Link
http://osvdb.org/32283
Broken Link
http://secunia.com/advisories/24183
Broken Link
http://secunia.com/advisories/24187
Broken Link
http://secunia.com/advisories/24192
Broken Link
http://secunia.com/advisories/24319
Broken Link
http://secunia.com/advisories/24332
Broken Link
http://secunia.com/advisories/24425
Broken Link
http://secunia.com/advisories/29420
Third Party Advisory
http://security.gentoo.org/glsa/glsa-200703-03.xml
Mailing List
http://www.debian.org/security/2007/dsa-1263
Broken Link
http://www.securityfocus.com/bid/22580
Broken Link
http://www.securitytracker.com/id?1017659
Third Party Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/32531
and 20 more references
45
/ 100
moderate-risk
Severity
26/34 · High
Exploitability
10/34 · Low
Exposure
9/34 · Low