Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.60206
Category:Fedora Local Security Checks
Title:Fedora Core 7 FEDORA-2008-0170 (clamav)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to clamav
announced via advisory FEDORA-2008-0170.

Update Information:

Upstream clamav 0.92 fixes multiple security issues:
- CVE-2007-6335 (#426210)
- CVE-2007-6336 (#426343)
- CVE-2007-6337 (#426344)

References:
[ 1 ] Bug #240610 - clamav-milter socket doesn't agree with sendmail.cf
https://bugzilla.redhat.com/show_bug.cgi?id=240610
[ 2 ] Bug #426211 - CVE-2007-6335 CVE-2007-6336 CVE-2007-6337 clamav: multiple vulnerabilities [f7]
https://bugzilla.redhat.com/show_bug.cgi?id=426211

Solution: Apply the appropriate updates.

This update can be installed with the yum update program. Use
su -c 'yum update clamav'
at the command line. For more information, refer to Managing Software
with yum, available at http://docs.fedoraproject.org/yum/.

http://www.securityspace.com/smysecure/catid.html?in=FEDORA-2008-0170

Risk factor : Critical

CVSS Score:
10.0

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2007-6335
http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html
BugTraq ID: 26927
http://www.securityfocus.com/bid/26927
Debian Security Information: DSA-1435 (Google Search)
http://www.debian.org/security/2007/dsa-1435
https://www.exploit-db.com/exploits/4862
https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00740.html
https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00644.html
http://security.gentoo.org/glsa/glsa-200712-20.xml
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=634
http://www.mandriva.com/security/advisories?name=MDVSA-2008:003
http://www.securitytracker.com/id?1019112
http://secunia.com/advisories/28117
http://secunia.com/advisories/28153
http://secunia.com/advisories/28176
http://secunia.com/advisories/28278
http://secunia.com/advisories/28412
http://secunia.com/advisories/28421
http://secunia.com/advisories/28587
http://secunia.com/advisories/29420
SuSE Security Announcement: SUSE-SR:2008:001 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2008-01/msg00002.html
http://www.vupen.com/english/advisories/2007/4253
http://www.vupen.com/english/advisories/2008/0924/references
XForce ISS Database: clamantivirus-libclamav-mewpe-bo(39119)
https://exchange.xforce.ibmcloud.com/vulnerabilities/39119
Common Vulnerability Exposure (CVE) ID: CVE-2007-6336
BugTraq ID: 26946
http://www.securityfocus.com/bid/26946
http://securitytracker.com/id?1019150
XForce ISS Database: clamantivirus-mszip-bo(39169)
https://exchange.xforce.ibmcloud.com/vulnerabilities/39169
Common Vulnerability Exposure (CVE) ID: CVE-2007-6337
BugTraq ID: 27063
http://www.securityfocus.com/bid/27063
http://osvdb.org/42293
http://securitytracker.com/id?1019149
Common Vulnerability Exposure (CVE) ID: CVE-2007-4510
BugTraq ID: 25398
http://www.securityfocus.com/bid/25398
Debian Security Information: DSA-1366 (Google Search)
http://www.debian.org/security/2007/dsa-1366
https://www.redhat.com/archives/fedora-package-announce/2007-September/msg00104.html
http://security.gentoo.org/glsa/glsa-200709-14.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2007:172
http://secunia.com/advisories/26530
http://secunia.com/advisories/26552
http://secunia.com/advisories/26654
http://secunia.com/advisories/26674
http://secunia.com/advisories/26683
http://secunia.com/advisories/26751
http://secunia.com/advisories/26822
http://secunia.com/advisories/26916
http://securityreason.com/securityalert/3054
SuSE Security Announcement: SUSE-SR:2007:018 (Google Search)
http://www.novell.com/linux/security/advisories/2007_18_sr.html
http://www.trustix.org/errata/2007/0026/
http://www.vupen.com/english/advisories/2007/2952
XForce ISS Database: clamav-clihtmlnormalise-dos(36177)
https://exchange.xforce.ibmcloud.com/vulnerabilities/36177
XForce ISS Database: clamav-rtf-dos(36173)
https://exchange.xforce.ibmcloud.com/vulnerabilities/36173
CopyrightCopyright (c) 2008 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.