New Vulnerability found in Ubuntu |
|
|
|
Written by Rebecca Mints
|
|
Wednesday, 19 November 2008 |
|
Version 8.10 of Ubuntu has been found to be vulnerable to a DoS attack. Also affected are the corresponding versions of Kubuntu, Edbuntu, and Xubuntu.
It has been discovered by Moritz Jodeit that ClamAV was not handling certain strings correctly during the examination of a VBA project. If ClamAV was tricked into processing a carefully crafted malicious VBA file, a DoS would result. The fix is to upgrade the system to libclamav5 0.94.dfsg.1-1ubuntu0.1, which in laymans terms means a standard systems upgrade.
SOURCE:
Net Security
Ubuntu Security Notice - clamav vulnerability (USN-672-1) |