Show filters
156 Total Results
Displaying 81-90 of 156
Sort by:
Attacker Value
Unknown
CVE-2008-6845
Disclosure Date: July 02, 2009 (last updated October 04, 2023)
The unpack feature in ClamAV 0.93.3 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a corrupted LZH file.
0
Attacker Value
Unknown
CVE-2009-1372
Disclosure Date: April 23, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in the cli_url_canon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted URL.
0
Attacker Value
Unknown
CVE-2009-1371
Disclosure Date: April 23, 2009 (last updated October 04, 2023)
The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding.
0
Attacker Value
Unknown
CVE-2008-6680
Disclosure Date: April 08, 2009 (last updated October 04, 2023)
libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash) via a crafted EXE file that triggers a divide-by-zero error.
0
Attacker Value
Unknown
CVE-2009-1270
Disclosure Date: April 08, 2009 (last updated October 04, 2023)
libclamav/untar.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (infinite loop) via a crafted TAR file that causes (1) clamd and (2) clamscan to hang.
0
Attacker Value
Unknown
CVE-2009-1241
Disclosure Date: April 03, 2009 (last updated October 04, 2023)
Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypass detection of malware via a modified RAR archive.
0
Attacker Value
Unknown
CVE-2008-5525
Disclosure Date: December 12, 2008 (last updated October 04, 2023)
ClamAV 0.94.1 and possibly 0.93.1, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.
0
Attacker Value
Unknown
CVE-2008-5314
Disclosure Date: December 03, 2008 (last updated October 04, 2023)
Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the cli_check_jpeg_exploit, jpeg_check_photoshop, and jpeg_check_photoshop_8bim functions.
0
Attacker Value
Unknown
CVE-2008-5050
Disclosure Date: November 13, 2008 (last updated October 04, 2023)
Off-by-one error in the get_unicode_name function (libclamav/vba_extract.c) in Clam Anti-Virus (ClamAV) before 0.94.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted VBA project file, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2008-3914
Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in ClamAV before 0.94 have unknown impact and attack vectors related to file descriptor leaks on the "error path" in (1) libclamav/others.c and (2) libclamav/sis.c.
0