CVE-2022-20771 log

Source
Severity High
Remote Yes
Type Denial of service
Description
possible infinite loop vulnerability in the TIFF file parser. The issue only occurs if the "--alert-broken-media" ClamScan option is enabled. For ClamD, the affected option is "AlertBrokenMedia yes", and for libclamav it is the "CL_SCAN_HEURISTIC_BROKEN_MEDIA" scan option.
Group Package Affected Fixed Severity Status Ticket
AVG-2722 clamav 0.104.2-1 0.105.0-1 High Fixed