[clamav-users] What is the actual danger of this?

musc muschelgev at newcultures.com
Thu Feb 23 10:54:11 UTC 2023


On February 22, 2023 1:48:02 PM EST, newcomer01 via clamav-users <clamav-users at lists.clamav.net> wrote:
>for me look it like that the jpeg files cannot be read from heuristics scan as reason that something is wrong with it
>i would not think frist, that is be an exploit
>
>
>> A clamdscan flagged quite a few files on my system as Heueristics.Broken.Media.JPEG.JFIFmarkerBadPosition. What kind of exploit is that? And what kind of danger does it pose? (What does it do?) Is it for all systems? Or just for Windows?
>> 
>> A whole lot of web searching turned up nothing. Does anyone know?

In a security podcast I listened to not too long ago it spoke of an exploit against iPhones which was quite hazardous, was concealed inside of an image file, which would immediately take control of the iPhone. There's not enough information for me to say that this is that exploit. Maybe it is, maybe it's something similar, or maybe it's simply a bit of corruption of the jpg file and actually relatively harmless. There are a lot of possibilities. You're right, we don't want to make any premature assumptions, neither overestimate nor underestimate the hazard. The purpose of my post was to find more information in order to make a proper evaluation. Thanks for helping me clarify that.


More information about the clamav-users mailing list