Show filters
30 Total Results
Displaying 1-10 of 30
Sort by:
Attacker Value
Unknown

CVE-2014-9050

Disclosure Date: December 01, 2014 (last updated October 05, 2023)
Heap-based buffer overflow in the cli_scanpe function in libclamav/pe.c in ClamAV before 0.98.5 allows remote attackers to cause a denial of service (crash) via a crafted y0da Crypter PE file.
0
Attacker Value
Unknown

CVE-2013-2020

Disclosure Date: May 13, 2013 (last updated October 05, 2023)
Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an out-of-bounds read.
0
Attacker Value
Unknown

CVE-2011-3627

Disclosure Date: November 17, 2011 (last updated October 04, 2023)
The bytecode engine in ClamAV before 0.97.3 allows remote attackers to cause a denial of service (crash) via vectors related to "recursion level" and (1) libclamav/bytecode.c and (2) libclamav/bytecode_api.c.
0
Attacker Value
Unknown

CVE-2011-2721

Disclosure Date: August 05, 2011 (last updated October 04, 2023)
Off-by-one error in the cli_hm_scan function in matcher-hash.c in libclamav in ClamAV before 0.97.2 allows remote attackers to cause a denial of service (daemon crash) via an e-mail message that is not properly handled during certain hash calculations.
0
Attacker Value
Unknown

CVE-2011-1003

Disclosure Date: February 23, 2011 (last updated November 08, 2023)
Double free vulnerability in the vba_read_project_strings function in vba_extract.c in libclamav in ClamAV before 0.97 might allow remote attackers to execute arbitrary code via crafted Visual Basic for Applications (VBA) data in a Microsoft Office document. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-4260

Disclosure Date: December 07, 2010 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in pdf.c in libclamav in ClamAV before 0.96.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document, aka (1) "bb #2358" and (2) "bb #2396."
0
Attacker Value
Unknown

CVE-2010-4261

Disclosure Date: December 07, 2010 (last updated November 08, 2023)
Off-by-one error in the icon_cb function in pe_icons.c in libclamav in ClamAV before 0.96.5 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-4479

Disclosure Date: December 07, 2010 (last updated October 04, 2023)
Unspecified vulnerability in pdf.c in libclamav in ClamAV before 0.96.5 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document, aka "bb #2380," a different vulnerability than CVE-2010-4260.
0
Attacker Value
Unknown

CVE-2010-3434

Disclosure Date: September 30, 2010 (last updated October 04, 2023)
Buffer overflow in the find_stream_bounds function in pdf.c in libclamav in ClamAV before 0.96.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-1639

Disclosure Date: May 26, 2010 (last updated October 04, 2023)
The cli_pdf function in libclamav/pdf.c in ClamAV before 0.96.1 allows remote attackers to cause a denial of service (crash) via a malformed PDF file, related to an inconsistency in the calculated stream length and the real stream length.
0