Show filters
91 Total Results
Displaying 81-90 of 91
Sort by:
Attacker Value
Unknown

CVE-2009-1241

Disclosure Date: April 03, 2009 (last updated October 04, 2023)
Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypass detection of malware via a modified RAR archive.
0
Attacker Value
Unknown

CVE-2008-5525

Disclosure Date: December 12, 2008 (last updated October 04, 2023)
ClamAV 0.94.1 and possibly 0.93.1, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.
0
Attacker Value
Unknown

CVE-2008-3914

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in ClamAV before 0.94 have unknown impact and attack vectors related to file descriptor leaks on the "error path" in (1) libclamav/others.c and (2) libclamav/sis.c.
0
Attacker Value
Unknown

CVE-2008-3913

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Multiple memory leaks in freshclam/manager.c in ClamAV before 0.94 might allow attackers to cause a denial of service (memory consumption) via unspecified vectors related to "error handling logic".
0
Attacker Value
Unknown

CVE-2008-3912

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
libclamav in ClamAV before 0.94 allows attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to an out-of-memory condition.
0
Attacker Value
Unknown

CVE-2008-0728

Disclosure Date: February 12, 2008 (last updated October 04, 2023)
The unmew11 function in libclamav/mew.c in libclamav in ClamAV before 0.92.1 has unknown impact and attack vectors that trigger "heap corruption."
0
Attacker Value
Unknown

CVE-2007-2650

Disclosure Date: May 14, 2007 (last updated October 04, 2023)
The OLE2 parser in Clam AntiVirus (ClamAV) allows remote attackers to cause a denial of service (resource consumption) via an OLE2 file with (1) a large property size or (2) a loop in the FAT file block chain that triggers an infinite loop, as demonstrated via a crafted DOC file.
0
Attacker Value
Unknown

CVE-2007-0897

Disclosure Date: February 16, 2007 (last updated February 09, 2024)
Clam AntiVirus ClamAV before 0.90 does not close open file descriptors under certain conditions, which allows remote attackers to cause a denial of service (file descriptor consumption and failed scans) via CAB archives with a cabinet header record length of zero, which causes a function to return without closing a file descriptor.
Attacker Value
Unknown

CVE-2006-4018

Disclosure Date: August 08, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in the pefromupx function in libclamav/upx.c in Clam AntiVirus (ClamAV) 0.81 through 0.88.3 allows remote attackers to execute arbitrary code via a crafted UPX packed file containing sections with large rsize values.
0
Attacker Value
Unknown

CVE-2006-1615

Disclosure Date: April 06, 2006 (last updated February 22, 2025)
Multiple format string vulnerabilities in the logging code in Clam AntiVirus (ClamAV) before 0.88.1 might allow remote attackers to execute arbitrary code. NOTE: as of 20060410, it is unclear whether this is a vulnerability, as there is some evidence that the arguments are actually being sanitized properly.
0