Rapid7 Vulnerability & Exploit Database

FreeBSD: VID-F7A02651-C798-11EA-81D6-6805CABE6EBB (CVE-2020-3481): clamav -- multiple vulnerabilities

Free InsightVM Trial No Credit Card Necessary
Watch Demo See how it all works
Back to Search

FreeBSD: VID-F7A02651-C798-11EA-81D6-6805CABE6EBB (CVE-2020-3481): clamav -- multiple vulnerabilities

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
07/16/2020
Created
07/21/2020
Added
07/18/2020
Modified
10/20/2020

Description

Details for this vulnerability have not been published by NIST at this point. Descriptions from software vendor advisories for this issue are provided below.

From VID-F7A02651-C798-11EA-81D6-6805CABE6EBB:

Micah Snyder reports:

CVE-2020-3350

Fixed a vulnerability a malicious user could exploit to replace

a scan target's directory with a symlink to another path to trick

clamscan, clamdscan, or clamonacc into removing or moving a different

file (such as a critical system file). The issue would affect users

that use the --move or --remove options for clamscan, clamdscan and

clamonacc.

CVE-2020-3327

Fixed a vulnerability in the ARJ archive-parsing module in ClamAV

0.102.3 that could cause a denial-of-service (DoS) condition.

Improper bounds checking resulted in an out-of-bounds read that could

cause a crash. The previous fix for this CVE in version 0.102.3 was

incomplete. This fix correctly resolves the issue.

CVE-2020-3481

Fixed a vulnerability in the EGG archive module in ClamAV 0.102.0

- 0.102.3 that could cause a denial-of-service (DoS) condition.

Improper error handling could cause a crash due to a NULL pointer

dereference. This vulnerability is mitigated for those using the

official ClamAV signature databases because the file type signatures

in daily.cvd will not enable the EGG archive parser in affected

versions.

Solution(s)

  • freebsd-upgrade-package-clamav

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;