HTTP: ClamAV Encrypted PDF File Handling Memory Corruption
This signature detects attempts to exploit a known vulnerability against ClamAV. Attackers can execute arbitrary code or trigger a denial of service condition on the targeted system.
Extended Description
pdf.c in ClamAV 0.97.1 through 0.97.7 allows remote attackers to cause a denial of service (out-of-bounds-read) via a crafted length value in an encrypted PDF file.
Affected Products
Canonical ubuntu_linux
References
CVE: CVE-2013-2021
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Suse
Clamav
Canonical
4.3