← Back

CVE-2008-5050

nvd nist
Published: Nov 13, 2008Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Off-by-one error in the get_unicode_name function (libclamav/vba_extract.c) in Clam Anti-Virus (ClamAV) before 0.94.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted VBA project file, which triggers a heap-based buffer overflow.

Affected (99)

Clamav
Configuration A
99 vulnerable
Vulnerable SoftwareAffected Versions
Clam Anti Virus
Up to 0.94
Version 0.01
Version 0.02
Version 0.03
Version 0.04
Version 0.05
Version 0.06
Version 0.10
Version 0.11
Version 0.12
Version 0.13
Version 0.14
Version 0.14 pre
Version 0.15
Version 0.20
Version 0.21
Version 0.22
Version 0.23
Version 0.24
Version 0.51
Version 0.52
Version 0.53
Version 0.54
Version 0.60
Version 0.60p
Version 0.65
Version 0.67
Version 0.68.1
Version 0.68
Version 0.70
Version 0.71
Version 0.72
Version 0.73
Version 0.74
Version 0.75.1
Version 0.75
Version 0.80
Version 0.80 rc2
Version 0.80 rc3
Version 0.80 rc4
Version 0.80 rc
Version 0.80_rc1
Version 0.80_rc2
Version 0.80_rc3
Version 0.80_rc4
Version 0.81
Version 0.81 rc1
Version 0.81_rc1
Version 0.82
Version 0.83
Version 0.84
Version 0.84 rc1
Version 0.84 rc2
Version 0.84_rc1
Version 0.84_rc2
Version 0.85.1
Version 0.85
Version 0.86.1
Version 0.86.2
Version 0.86
Version 0.86 rc1
Version 0.86_rc1
Version 0.87.1
Version 0.87
Version 0.88.1
Version 0.88.2
Version 0.88.3
Version 0.88.4
Version 0.88.5
Version 0.88.6
Version 0.88.7
Version 0.88.7 p0
Version 0.88.7 p1
Version 0.88
Version 0.90.1
Version 0.90.1 p0
Version 0.90.2
Version 0.90.2 p0
Version 0.90.3
Version 0.90.3 p0
Version 0.90.3 p1
Version 0.90
Version 0.90_rc1.1
Version 0.90_rc2
Version 0.90_rc3
Version 0.90rc1
Version 0.91.1
Version 0.91.2
Version 0.91.2 p0
Version 0.91
Version 0.91rc1
Version 0.91rc2
Version 0.92.1
Version 0.92
Version 0.92 p0
Version 0.93.1
Version 0.93.2
Version 0.93.3
Version 0.93

References (50)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.