Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.56671
Category:Debian Local Security Checks
Title:Debian: Security Advisory (DSA-1050-1)
Summary:The remote host is missing an update for the Debian 'clamav' package(s) announced via the DSA-1050-1 advisory.
Description:Summary:
The remote host is missing an update for the Debian 'clamav' package(s) announced via the DSA-1050-1 advisory.

Vulnerability Insight:
Ulf Harnhammar and an anonymous researcher from Germany discovered a vulnerability in the protocol code of freshclam, a command line utility responsible for downloading and installing virus signature updates for ClamAV, the antivirus scanner for Unix. This could lead to a denial of service or potentially the execution of arbitrary code.

The old stable distribution (woody) does not contain clamav packages.

For the stable distribution (sarge) this problem has been fixed in version 0.84-2.sarge.9.

For the unstable distribution (sid) this problem has been fixed in version 0.88.2-1.

We recommend that you upgrade your clamav packages.

Affected Software/OS:
'clamav' package(s) on Debian 3.1.

Solution:
Please install the updated package(s).

CVSS Score:
5.1

CVSS Vector:
AV:N/AC:H/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2006-1989
http://lists.apple.com/archives/security-announce/2006/Jun/msg00000.html
BugTraq ID: 17754
http://www.securityfocus.com/bid/17754
CERT/CC vulnerability note: VU#599220
http://www.kb.cert.org/vuls/id/599220
Debian Security Information: DSA-1050 (Google Search)
http://www.debian.org/security/2006/dsa-1050
http://www.gentoo.org/security/en/glsa/glsa-200605-03.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2006:080
http://www.osvdb.org/25120
http://securitytracker.com/id?1016392
http://secunia.com/advisories/19874
http://secunia.com/advisories/19880
http://secunia.com/advisories/19912
http://secunia.com/advisories/19963
http://secunia.com/advisories/19964
http://secunia.com/advisories/20117
http://secunia.com/advisories/20159
http://secunia.com/advisories/20877
SuSE Security Announcement: SUSE-SA:2006:025 (Google Search)
http://www.novell.com/linux/security/advisories/2006_05_05.html
SuSE Security Announcement: SUSE-SR:2006:010 (Google Search)
http://lists.suse.com/archive/suse-security-announce/2006-May/0004.html
http://www.trustix.org/errata/2006/0024
http://www.vupen.com/english/advisories/2006/1586
http://www.vupen.com/english/advisories/2006/2566
XForce ISS Database: clamav-freshclam-http-bo(26182)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26182
CopyrightCopyright (C) 2008 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.