Search CVE reports


Toggle filters

101 – 110 of 169 results


CVE-2010-0098

Medium priority
Fixed

ClamAV before 0.96 does not properly handle the (1) CAB and (2) 7z file formats, which allows remote attackers to bypass virus detection via a crafted archive that is compatible with standard archive utilities.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2008-6845

Medium priority
Fixed

The unpack feature in ClamAV 0.93.3 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a corrupted LZH file.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2009-1601

Medium priority
Fixed

The Ubuntu clamav-milter.init script in clamav-milter before 0.95.1+dfsg-1ubuntu1.2 in Ubuntu 9.04 sets the ownership of the current working directory to the clamav account, which might allow local users to bypass intended access...

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2009-1372

Medium priority
Not affected

Stack-based buffer overflow in the cli_url_canon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted URL.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2009-1371

Medium priority
Fixed

The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2009-1270

Medium priority

Some fixes available 4 of 5

libclamav/untar.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (infinite loop) via a crafted TAR file that causes (1) clamd and (2) clamscan to hang.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2008-6680

Medium priority

Some fixes available 4 of 5

libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash) via a crafted EXE file that triggers a divide-by-zero error.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2009-1241

Low priority

Some fixes available 1 of 4

Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypass detection of malware via a modified RAR archive.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2008-5525

Low priority
Ignored

ClamAV 0.94.1 and possibly 0.93.1, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the...

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages

CVE-2008-5314

Low priority
Fixed

Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the...

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
clamav
Show less packages