UBUNTU-CVE-2018-14679
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-14679
UBUNTU-CVE-2018-14679
Summary:
Details: An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the CHM PMGI/PMGL chunk number validity checks, which could lead to denial of service (uninitialized data dereference and application crash).
References: https://ubuntu.com/security/CVE-2018-14679, http://www.openwall.com/lists/oss-security/2018/07/26/1, https://ubuntu.com/security/notices/USN-3728-1, https://ubuntu.com/security/notices/USN-3728-2, https://ubuntu.com/security/notices/USN-3728-3, https://ubuntu.com/security/notices/USN-3789-2, https://www.cve.org/CVERecord?id=CVE-2018-14679, https://ubuntu.com/security/notices/USN-7788-1
Affected packages
Package
Name: clamav
Purl: pkg:deb/ubuntu/[email protected]+dfsg-1ubuntu0.14.04.3?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
