|
Clam AntiVirus contains a flaw that may allow a remote denial of service. The problem ist that the 'ole2_walk_property_tree()' function in the OLE2 unpacker does not properly handle malformed OLE2 files. With a malformed .doc file containing an invalid property tree, a remote attacker can cause the application to enter an infinite loop resulting in a loss of availability.
|