RULE(RULE ID:316319)

Rule General Information
Release Date: 2015-07-08
Rule Name: Clamav UPX File Handling Integer Overflow Vulnerability (CVE-2015-2170)
Severity:
CVE ID:
CNNVD ID:
Rule Protection Details
Description: The upx decoder in ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted file.
Impact: An attacker can exploit the affected software with an integer overflow vulnerability. Successful exploit leads to execute arbitrary code, and failed exploit may disturb the software logic and cause denial of service.
Affected OS: Windows
Reference: SecurityFocusBID:74443
Solutions
More advisories have been published on the website, please visit for more suggestions:
http://www.clamav.net/download.html