Clam AntiVirus (ClamAV) 0.88.6 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Clamav | Clam_anti-virus | 0.88.6 (including) | 0.88.6 (including) |
Clamav | Ubuntu | dapper | * |
Clamav | Ubuntu | devel | * |
Clamav | Ubuntu | edgy | * |
Clamav | Ubuntu | feisty | * |
Clamav | Ubuntu | gutsy | * |
Clamav | Ubuntu | hardy | * |