Show filters
19 Total Results
Displaying 11-19 of 19
Sort by:
Attacker Value
Unknown

CVE-2010-1311

Disclosure Date: April 08, 2010 (last updated October 04, 2023)
The qtm_decompress function in libclamav/mspack.c in ClamAV before 0.96 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted CAB archive that uses the Quantum (aka .Q) compression format. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-6845

Disclosure Date: July 02, 2009 (last updated October 04, 2023)
The unpack feature in ClamAV 0.93.3 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a corrupted LZH file.
0
Attacker Value
Unknown

CVE-2009-1372

Disclosure Date: April 23, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in the cli_url_canon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted URL.
0
Attacker Value
Unknown

CVE-2009-1371

Disclosure Date: April 23, 2009 (last updated October 04, 2023)
The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding.
0
Attacker Value
Unknown

CVE-2008-5314

Disclosure Date: December 03, 2008 (last updated October 04, 2023)
Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the cli_check_jpeg_exploit, jpeg_check_photoshop, and jpeg_check_photoshop_8bim functions.
0
Attacker Value
Unknown

CVE-2008-5050

Disclosure Date: November 13, 2008 (last updated October 04, 2023)
Off-by-one error in the get_unicode_name function (libclamav/vba_extract.c) in Clam Anti-Virus (ClamAV) before 0.94.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted VBA project file, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2008-1389

Disclosure Date: September 04, 2008 (last updated October 04, 2023)
libclamav/chmunpack.c in the chm-parser in ClamAV before 0.94 allows remote attackers to cause a denial of service (application crash) via a malformed CHM file, related to an "invalid memory access."
0
Attacker Value
Unknown

CVE-2008-3215

Disclosure Date: July 18, 2008 (last updated October 04, 2023)
libclamav/petite.c in ClamAV before 0.93.3 allows remote attackers to cause a denial of service via a malformed Petite file that triggers an out-of-bounds memory access. NOTE: this issue exists because of an incomplete fix for CVE-2008-2713.
0
Attacker Value
Unknown

CVE-2008-0728

Disclosure Date: February 12, 2008 (last updated October 04, 2023)
The unmew11 function in libclamav/mew.c in libclamav in ClamAV before 0.92.1 has unknown impact and attack vectors that trigger "heap corruption."
0