CVE-2018-15378
- EPSS 1.32%
- Veröffentlicht 15.10.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:50:39
A vulnerability in ClamAV versions prior to 0.100.2 could allow an attacker to cause a denial of service (DoS) condition. The vulnerability is due to an error related to the MEW unpacker within the "unmew11()" function (libclamav/mew.c), which can be...
CVE-2018-0360
- EPSS 1.73%
- Veröffentlicht 16.07.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:38:03
ClamAV before 0.100.1 has an HWP integer overflow with a resultant infinite loop via a crafted Hangul Word Processor file. This is in parsehwp3_paragraph() in libclamav/hwp.c.
CVE-2018-0361
- EPSS 1.62%
- Veröffentlicht 16.07.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:38:03
ClamAV before 0.100.1 lacks a PDF object length check, resulting in an unreasonably long time to parse a relatively small file.
CVE-2018-0202
- EPSS 2.63%
- Veröffentlicht 27.03.2018 09:29:00
- Zuletzt bearbeitet 21.11.2024 03:37:43
clamscan in ClamAV before 0.99.4 contains a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation checking mechanis...
CVE-2018-1000085
- EPSS 1.64%
- Veröffentlicht 13.03.2018 15:29:01
- Zuletzt bearbeitet 21.11.2024 03:39:36
ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerability in XAR parser, function xar_hash_check() that can result in Leaking of memory, may help in developing exploit chains.. This attack appear to be exploitable via The ...
CVE-2017-12374
- EPSS 4.98%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:24
The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of input valid...
CVE-2017-12375
- EPSS 5.56%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:24
The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of input valid...
CVE-2017-12376
- EPSS 6.64%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:24
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an affected device. The vulnerabili...
- EPSS 11.58%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:25
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an affected device. The vulnerabili...
CVE-2017-12378
- EPSS 2.79%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:25
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation...