Loading
Generated remediation guidance and an executive summary. No account required.
freshclam in (1) Clam Antivirus (ClamAV) 0.88 and (2) ClamXav 1.0.3h and earlier does not drop privileges before processing the config-file command line option, which allows local users to read portions of arbitrary files when an error message displays the first line of the target file.
Use Clam Anti-Virus vendor hub and Clamav product page to widen CVE-2006-2427 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2008-1100, CVE-2008-5050 and CVE-2008-1833 for nearby disclosures in the same product family.