Show filters
33 Total Results
Displaying 21-30 of 33
Sort by:
Attacker Value
Unknown

CVE-2007-0898

Disclosure Date: February 16, 2007 (last updated October 04, 2023)
Directory traversal vulnerability in clamd in Clam AntiVirus ClamAV before 0.90 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the id MIME header parameter in a multi-part message.
0
Attacker Value
Unknown

CVE-2006-4182

Disclosure Date: October 16, 2006 (last updated October 04, 2023)
Integer overflow in ClamAV 0.88.1 and 0.88.4, and other versions before 0.88.5, allows remote attackers to cause a denial of service (scanning service crash) and execute arbitrary code via a crafted Portable Executable (PE) file that leads to a heap-based buffer overflow when less memory is allocated than expected.
0
Attacker Value
Unknown

CVE-2006-5295

Disclosure Date: October 16, 2006 (last updated October 04, 2023)
Unspecified vulnerability in ClamAV before 0.88.5 allows remote attackers to cause a denial of service (scanning service crash) via a crafted Compressed HTML Help (CHM) file that causes ClamAV to "read an invalid memory location."
0
Attacker Value
Unknown

CVE-2006-1614

Disclosure Date: April 06, 2006 (last updated February 22, 2025)
Integer overflow in the cli_scanpe function in the PE header parser (libclamav/pe.c) in Clam AntiVirus (ClamAV) before 0.88.1, when ArchiveMaxFileSize is disabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code.
0
Attacker Value
Unknown

CVE-2006-1630

Disclosure Date: April 06, 2006 (last updated February 22, 2025)
The cli_bitset_set function in libclamav/others.c in Clam AntiVirus (ClamAV) before 0.88.1 allows remote attackers to cause a denial of service via unspecified vectors that trigger an "invalid memory access."
0
Attacker Value
Unknown

CVE-2006-1615

Disclosure Date: April 06, 2006 (last updated February 22, 2025)
Multiple format string vulnerabilities in the logging code in Clam AntiVirus (ClamAV) before 0.88.1 might allow remote attackers to execute arbitrary code. NOTE: as of 20060410, it is unclear whether this is a vulnerability, as there is some evidence that the arguments are actually being sanitized properly.
0
Attacker Value
Unknown

CVE-2006-0162

Disclosure Date: January 10, 2006 (last updated February 22, 2025)
Heap-based buffer overflow in libclamav/upx.c in Clam Antivirus (ClamAV) before 0.88 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted UPX files.
0
Attacker Value
Unknown

CVE-2005-3587

Disclosure Date: November 16, 2005 (last updated February 22, 2025)
Improper boundary checks in petite.c in Clam AntiVirus (ClamAV) before 0.87.1 allows attackers to perform unknown attacks via unknown vectors.
0
Attacker Value
Unknown

CVE-2005-3501

Disclosure Date: November 05, 2005 (last updated February 22, 2025)
The cabd_find function in cabd.c of the libmspack library (mspack) for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted CAB file that causes cabd_find to be called with a zero length.
0
Attacker Value
Unknown

CVE-2005-3500

Disclosure Date: November 05, 2005 (last updated February 22, 2025)
The tnef_attachment function in tnef.c for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via a crafted value in a CAB file that causes ClamAV to repeatedly scan the same block.
0