Show filters
91 Total Results
Displaying 71-80 of 91
Sort by:
Attacker Value
Unknown

CVE-2010-3434

Disclosure Date: September 30, 2010 (last updated October 04, 2023)
Buffer overflow in the find_stream_bounds function in pdf.c in libclamav in ClamAV before 0.96.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-1639

Disclosure Date: May 26, 2010 (last updated October 04, 2023)
The cli_pdf function in libclamav/pdf.c in ClamAV before 0.96.1 allows remote attackers to cause a denial of service (crash) via a malformed PDF file, related to an inconsistency in the calculated stream length and the real stream length.
0
Attacker Value
Unknown

CVE-2010-1640

Disclosure Date: May 26, 2010 (last updated October 04, 2023)
Off-by-one error in the parseicon function in libclamav/pe_icons.c in ClamAV 0.96 allows remote attackers to cause a denial of service (crash) via a crafted PE icon that triggers an out-of-bounds read, related to improper rounding during scaling.
0
Attacker Value
Unknown

CVE-2010-0098

Disclosure Date: April 08, 2010 (last updated October 04, 2023)
ClamAV before 0.96 does not properly handle the (1) CAB and (2) 7z file formats, which allows remote attackers to bypass virus detection via a crafted archive that is compatible with standard archive utilities.
0
Attacker Value
Unknown

CVE-2010-1311

Disclosure Date: April 08, 2010 (last updated October 04, 2023)
The qtm_decompress function in libclamav/mspack.c in ClamAV before 0.96 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted CAB archive that uses the Quantum (aka .Q) compression format. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-6845

Disclosure Date: July 02, 2009 (last updated October 04, 2023)
The unpack feature in ClamAV 0.93.3 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a corrupted LZH file.
0
Attacker Value
Unknown

CVE-2009-1372

Disclosure Date: April 23, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in the cli_url_canon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted URL.
0
Attacker Value
Unknown

CVE-2009-1371

Disclosure Date: April 23, 2009 (last updated October 04, 2023)
The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding.
0
Attacker Value
Unknown

CVE-2008-6680

Disclosure Date: April 08, 2009 (last updated October 04, 2023)
libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash) via a crafted EXE file that triggers a divide-by-zero error.
0
Attacker Value
Unknown

CVE-2009-1270

Disclosure Date: April 08, 2009 (last updated October 04, 2023)
libclamav/untar.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (infinite loop) via a crafted TAR file that causes (1) clamd and (2) clamscan to hang.
0