Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ClamAV before 0.96 does not properly handle the (1) CAB and (2) 7z file formats, which allows remote attackers to bypass virus detection via a crafted archive that is compatible with standard archive utilities.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ClamAV 档案文件解析多个安全绕过和内存破坏漏洞
Vulnerability Description
Clam AntiVirus是Unix的GPL杀毒工具包,很多邮件网关产品都在使用。 Clam的libclamav/mspack.c文件中的qtm_decompress()函数中存在内存破坏漏洞,在扫描特制的Quantum压缩CAB文件时就可以触发这个漏洞,导致应用程序崩溃。
CVSS Information
N/A
Vulnerability Type
N/A