Clamav
clamav
103 CVEs • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (103)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could allow an unauthenticated, remote attacker to cause a denial of service (...Show more |
A vulnerability in the RAR file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affecte...Show more |
3Canonical ClamavDebian3Clamav Debian LinuxUbuntu LinuxNov 21, 2024 Oct 15, 2018 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A vulnerability in ClamAV versions prior to 0.100.2 could allow an attacker to cause a denial of service (DoS) condition. The vulnerability is due to an error related to the MEW unpacker within the "unmew11()" function (...Show more |
2Clamav Debian2Clamav Debian LinuxNov 21, 2024 Jul 16, 2018 N/A· v4 3.3 LOW· v3 4.3 MEDIUM· v2 ClamAV before 0.100.1 lacks a PDF object length check, resulting in an unreasonably long time to parse a relatively small file. |
3Canonical ClamavDebian3Clamav Debian LinuxUbuntu LinuxNov 21, 2024 Jul 16, 2018 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 ClamAV before 0.100.1 has an HWP integer overflow with a resultant infinite loop via a crafted Hangul Word Processor file. This is in parsehwp3_paragraph() in libclamav/hwp.c. |
3Canonical ClamavDebian3Clamav Debian LinuxUbuntu LinuxNov 21, 2024 Mar 27, 2018 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 clamscan in ClamAV before 0.99.4 contains a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper inpu...Show more |
3Canonical ClamavDebian3Clamav Debian LinuxUbuntu LinuxNov 21, 2024 Mar 13, 2018 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerability in XAR parser, function xar_hash_check() that can result in Leaking of memory, may help in developing exploit chains.. This attack app...Show more |
2Clamav Debian2Clamav Debian LinuxNov 21, 2024 Jan 26, 2018 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is du...Show more |
2Clamav Debian2Clamav Debian LinuxNov 21, 2024 Jan 26, 2018 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an af...Show more |
2Clamav Debian2Clamav Debian LinuxNov 21, 2024 Jan 26, 2018 N/A· v4 5.5 MEDIUM· v3 7.1 HIGH· v2 ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is du...Show more |
2Clamav Debian2Clamav Debian LinuxNov 21, 2024 Jan 26, 2018 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an af...Show more |
2Clamav Debian2Clamav Debian LinuxNov 21, 2024 Jan 26, 2018 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an af...Show more |
2Clamav Debian2Clamav Debian LinuxNov 21, 2024 Jan 26, 2018 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability i...Show more |
2Clamav Debian2Clamav Debian LinuxNov 21, 2024 Jan 26, 2018 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability i...Show more |
The wwunpack function in libclamav/wwunpack.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (use-after-free) via a crafted PE file with WWPack compression. |
libclamav/message.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted e-mail message. |
2Canonical Clamav2Clamav Ubuntu LinuxMay 6, 2026 Oct 3, 2016 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted 7z file. |
2Canonical Clamav2Clamav Ubuntu LinuxMay 6, 2026 Oct 3, 2016 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted mew packer executable. |
2Cisco Clamav3Clamav Email Security ApplianceWeb Security ApplianceMay 6, 2026 Jun 8, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 libclamav in ClamAV (aka Clam AntiVirus), as used in Advanced Malware Protection (AMP) on Cisco Email Security Appliance (ESA) devices before 9.7.0-125 and Web Security Appliance (WSA) devices before 9.0.1-135 and 9.1.x...Show more |
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted xz archive file. |