http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-1745 "The chm_decompress_stream function in libclamav/chmunpack.c in Clam AntiVirus (ClamAV) before 0.90.2 leaks file descriptors, which has unknown impact and attack vectors involving a crafted CHM file, a different vulnerability than CVE-2007-0897. NOTE: some of these details are obtained from third party information." CVE-2007-1997 appears to be somewhat related and is said to affect 0.9x versions before 0.90.2 only, however for this CVE I didn't find anything that would say 0.88.7 currently in FE5 and FE6 wouldn't be affected.
*** This bug has been marked as a duplicate of 236703 ***