Show filters
19 Total Results
Displaying 1-10 of 19
Sort by:
Attacker Value
Unknown

CVE-2014-9050

Disclosure Date: December 01, 2014 (last updated October 05, 2023)
Heap-based buffer overflow in the cli_scanpe function in libclamav/pe.c in ClamAV before 0.98.5 allows remote attackers to cause a denial of service (crash) via a crafted y0da Crypter PE file.
0
Attacker Value
Unknown

CVE-2013-2020

Disclosure Date: May 13, 2013 (last updated October 05, 2023)
Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an out-of-bounds read.
0
Attacker Value
Unknown

CVE-2011-3627

Disclosure Date: November 17, 2011 (last updated October 04, 2023)
The bytecode engine in ClamAV before 0.97.3 allows remote attackers to cause a denial of service (crash) via vectors related to "recursion level" and (1) libclamav/bytecode.c and (2) libclamav/bytecode_api.c.
0
Attacker Value
Unknown

CVE-2011-2721

Disclosure Date: August 05, 2011 (last updated October 04, 2023)
Off-by-one error in the cli_hm_scan function in matcher-hash.c in libclamav in ClamAV before 0.97.2 allows remote attackers to cause a denial of service (daemon crash) via an e-mail message that is not properly handled during certain hash calculations.
0
Attacker Value
Unknown

CVE-2011-1003

Disclosure Date: February 23, 2011 (last updated November 08, 2023)
Double free vulnerability in the vba_read_project_strings function in vba_extract.c in libclamav in ClamAV before 0.97 might allow remote attackers to execute arbitrary code via crafted Visual Basic for Applications (VBA) data in a Microsoft Office document. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-4260

Disclosure Date: December 07, 2010 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in pdf.c in libclamav in ClamAV before 0.96.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document, aka (1) "bb #2358" and (2) "bb #2396."
0
Attacker Value
Unknown

CVE-2010-4261

Disclosure Date: December 07, 2010 (last updated November 08, 2023)
Off-by-one error in the icon_cb function in pe_icons.c in libclamav in ClamAV before 0.96.5 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-4479

Disclosure Date: December 07, 2010 (last updated October 04, 2023)
Unspecified vulnerability in pdf.c in libclamav in ClamAV before 0.96.5 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document, aka "bb #2380," a different vulnerability than CVE-2010-4260.
0
Attacker Value
Unknown

CVE-2010-3434

Disclosure Date: September 30, 2010 (last updated October 04, 2023)
Buffer overflow in the find_stream_bounds function in pdf.c in libclamav in ClamAV before 0.96.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-0098

Disclosure Date: April 08, 2010 (last updated October 04, 2023)
ClamAV before 0.96 does not properly handle the (1) CAB and (2) 7z file formats, which allows remote attackers to bypass virus detection via a crafted archive that is compatible with standard archive utilities.
0