Search CVE reports


Toggle filters

71 – 80 of 169 results


CVE-2015-1461

Medium priority

Some fixes available 3 of 4

ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted (1) Yoda's crypter or (2) mew packer file, related to a "heap out of bounds condition."

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2014-9328

Medium priority

Some fixes available 3 of 4

ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted upack packer file, related to a "heap out of bounds condition."

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2014-9050

Medium priority

Some fixes available 3 of 4

Heap-based buffer overflow in the cli_scanpe function in libclamav/pe.c in ClamAV before 0.98.5 allows remote attackers to cause a denial of service (crash) via a crafted y0da Crypter PE file.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2013-7089

Medium priority
Ignored

ClamAV before 0.97.7: dbg_printhex possible information leak

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2013-7088

Medium priority
Ignored

ClamAV before 0.97.7 has buffer overflow in the libclamav component

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2013-7087

Medium priority
Ignored

ClamAV before 0.97.7 has WWPack corrupt heap memory

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2013-6497

Medium priority

Some fixes available 3 of 4

clamscan in ClamAV before 0.98.5, when using -a option, allows remote attackers to cause a denial of service (crash) as demonstrated by the jwplayer.js file.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2013-2021

Medium priority
Fixed

pdf.c in ClamAV 0.97.1 through 0.97.7 allows remote attackers to cause a denial of service (out-of-bounds-read) via a crafted length value in an encrypted PDF file.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2013-2020

Medium priority
Fixed

Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which...

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2012-4667

Medium priority
Ignored

Multiple cross-site scripting (XSS) vulnerabilities in SquidClamav 5.x before 5.8 allow remote attackers to inject arbitrary web script or HTML via the (1) url, (2) virus, (3) source, or (4) user parameter to (a) clwarn.cgi, (b)...

1 affected package

squidclamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squidclamav
Show less packages