Unrated severityNVD Advisory· Published Aug 23, 2007· Updated Apr 23, 2026
CVE-2007-4510
CVE-2007-4510
Description
ClamAV before 0.91.2, as used in Kolab Server 2.0 through 2.2beta1 and other products, allows remote attackers to cause a denial of service (application crash) via (1) a crafted RTF file, which triggers a NULL dereference in the cli_scanrtf function in libclamav/rtf.c; or (2) a crafted HTML document with a data: URI, which triggers a NULL dereference in the cli_html_normalise function in libclamav/htmlnorm.c. NOTE: some of these details are obtained from third party information.
Affected products
8cpe:2.3:a:kolab:kolab_server:2.0:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:kolab:kolab_server:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:kolab:kolab_server:2.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:kolab:kolab_server:2.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:kolab:kolab_server:2.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:kolab:kolab_server:2.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:kolab:kolab_server:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:kolab:kolab_server:2.2beta1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
27- secunia.com/advisories/26530nvdPatchVendor Advisory
- secunia.com/advisories/26552nvdPatchVendor Advisory
- www.securityfocus.com/bid/25398nvdPatch
- docs.info.apple.com/article.htmlnvd
- kolab.org/security/kolab-vendor-notice-17.txtnvd
- lists.apple.com/archives/security-announce/2008/Mar/msg00001.htmlnvd
- secunia.com/advisories/26654nvd
- secunia.com/advisories/26674nvd
- secunia.com/advisories/26683nvd
- secunia.com/advisories/26751nvd
- secunia.com/advisories/26822nvd
- secunia.com/advisories/26916nvd
- secunia.com/advisories/29420nvd
- security.gentoo.org/glsa/glsa-200709-14.xmlnvd
- securityreason.com/securityalert/3054nvd
- sourceforge.net/project/shownotes.phpnvd
- www.debian.org/security/2007/dsa-1366nvd
- www.mandriva.com/security/advisoriesnvd
- www.novell.com/linux/security/advisories/2007_18_sr.htmlnvd
- www.trustix.org/errata/2007/0026/nvd
- www.vupen.com/english/advisories/2007/2952nvd
- www.vupen.com/english/advisories/2008/0924/referencesnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/36173nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/36177nvd
- www.redhat.com/archives/fedora-package-announce/2007-September/msg00104.htmlnvd
- wwws.clamav.net/bugzilla/show_bug.cginvd
- wwws.clamav.net/bugzilla/show_bug.cginvd
News mentions
0No linked articles in our index yet.