> Every day I have received about 30 email's with  pictures which have strange
> names( for example sevwqwso.gif, iwhfetsn.gif, qfwecqtf.jpg) and
> nonexistent's senders ([EMAIL PROTECTED],  [EMAIL PROTECTED]). Clamav don't
> find any viruses in this email's .
> Can Clamav find viruses in pictures?

I was skeptical that there would be viruses in non-executable
data files, but sure enough, looks like there are buffer overrun
exploits for all sort of images on M$ platforms:

http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-1048
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0566
http://www.microsoft.com/technet/security/bulletin/ms04-028.mspx

Sorry, I don't know if clamav scans them, but it does look like
there is definitely a potential for abuse there.

G


-------------------------------------------------------
This SF.Net email is sponsored by: YOU BE THE JUDGE. Be one of 170
Project Admins to receive an Apple iPod Mini FREE for your judgement on
who ports your project to Linux PPC the best. Sponsored by IBM.
Deadline: Sept. 24. Go here: http://sf.net/ppc_contest.php
_______________________________________________
Clamav-users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/clamav-users

Reply via email to