The gnu regular expression code in file 4.20 allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted document with a large number of line feed characters, which is not well handled by OS/2 REXX regular expressions that use wildcards, as originally reported for AMaViS.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-04-13 11:19
Updated : 2018-10-16 09:41
NVD link : CVE-2007-2026
Mitre link : CVE-2007-2026
JSON object : View
CWE
Products Affected
gentoo
- file
amavis
- virus_scanner