>> ClamAV "execute_standard_filter()" RAR Archive Denial of Service Vulnerability
Title : ClamAV "execute_standard_filter()" RAR Archive Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2007-2509 CVE ID : CVE-2007-3725
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-07-12
Technical Description
A vulnerability has been identified in ClamAV (Clam AntiVirus), which could be exploited by attackers or malware to cause a denial of service. This issue is caused by an error in the "execute_standard_filter()" [libclamav/unrar/unrarvm.c] function when processing a malformed RAR archive, which could be exploited to crash a vulnerable application, creating a denial of service condition.