Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
clamav clamav 0.88.3 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2006-4018
Heap-based buffer overflow in the pefromupx function in libclamav/upx.c in Clam AntiVirus (ClamAV) 0.81 up to and including 0.88.3 allows remote malicious users to execute arbitrary code via a crafted UPX packed file containing sections with large rsize values.
Clamav Clamav 0.84
Clamav Clamav 0.86
Clamav Clamav 0.87.1
Clamav Clamav 0.81
Clamav Clamav 0.85.1
Clamav Clamav 0.88.2
Clamav Clamav 0.88.3
Clamav Clamav 0.82
Clamav Clamav 0.83
Clamav Clamav 0.86.1
Clamav Clamav 0.86.2
Clamav Clamav 0.85
Clamav Clamav 0.87
Clamav Clamav 0.88
Clamav Clamav 0.88.1
1 EDB exploit
4.3
CVSSv2
CVE-2010-1639
The cli_pdf function in libclamav/pdf.c in ClamAV prior to 0.96.1 allows remote malicious users to cause a denial of service (crash) via a malformed PDF file, related to an inconsistency in the calculated stream length and the real stream length.
Clamav Clamav 0.95.2
Clamav Clamav 0.86.2
Clamav Clamav 0.88.5
Clamav Clamav 0.02
Clamav Clamav 0.92
Clamav Clamav 0.95
Clamav Clamav 0.15
Clamav Clamav 0.90
Clamav Clamav 0.75.1
Clamav Clamav 0.65
Clamav Clamav 0.88.7
Clamav Clamav 0.81
Clamav Clamav 0.86
Clamav Clamav 0.01
Clamav Clamav 0.85
Clamav Clamav 0.84
Clamav Clamav 0.3
Clamav Clamav 0.93.1
Clamav Clamav 0.95.1
Clamav Clamav 0.93
Clamav Clamav 0.70
Clamav Clamav 0.68.1
5
CVSSv2
CVE-2008-6845
The unpack feature in ClamAV 0.93.3 and previous versions allows remote malicious users to cause a denial of service (segmentation fault) via a corrupted LZH file.
Clamav Clamav 0.93.2
Clamav Clamav 0.88.1
Clamav Clamav 0.88.2
Clamav Clamav 0.88.7 P1
Clamav Clamav 0.90.3 P0
Clamav Clamav 0.90.3 P1
Clamav Clamav 0.90.2 P0
Clamav Clamav 0.92.1
Clamav Clamav 0.65
Clamav Clamav 0.93.1
Clamav Clamav 0.71
Clamav Clamav 0.83
Clamav Clamav 0.84
Clamav Clamav 0.05
Clamav Clamav 0.03
Clamav Clamav 0.14
Clamav Clamav 0.12
Clamav Clamav 0.24
Clamav Clamav 0.90.1
Clamav Clamav 0.67-1
Clamav Clamav 0.80
Clamav Clamav 0.87
10
CVSSv2
CVE-2008-0728
The unmew11 function in libclamav/mew.c in libclamav in ClamAV prior to 0.92.1 has unknown impact and attack vectors that trigger "heap corruption."
Clamav Clamav 0.66
Clamav Clamav 0.67-1
Clamav Clamav 0.80
Clamav Clamav 0.90
Clamav Clamav 0.88
Clamav Clamav 0.87.1
Clamav Clamav 0.88.7 P0
Clamav Clamav 0.88.7
Clamav Clamav 0.90.3 P1
Clamav Clamav 0.90.2 P0
Clamav Clamav 0.90.3
Clamav Clamav 0.68
Clamav Clamav 0.67
Clamav Clamav 0.75.1
Clamav Clamav 0.75
Clamav Clamav 0.85.1
Clamav Clamav 0.86
Clamav Clamav 0.01
Clamav Clamav 0.21
Clamav Clamav 0.54
Clamav Clamav 0.60
Clamav Clamav 0.81
5
CVSSv2
CVE-2014-9050
Heap-based buffer overflow in the cli_scanpe function in libclamav/pe.c in ClamAV prior to 0.98.5 allows remote malicious users to cause a denial of service (crash) via a crafted y0da Crypter PE file.
Clamav Clamav
Clamav Clamav 0.93
Clamav Clamav 0.92 P0
Clamav Clamav 0.91
Clamav Clamav 0.90
Clamav Clamav 0.88.7
Clamav Clamav 0.88.6
Clamav Clamav 0.87.1
Clamav Clamav 0.87
Clamav Clamav 0.84
Clamav Clamav 0.80
Clamav Clamav 0.74
Clamav Clamav 0.73
Clamav Clamav 0.72
Clamav Clamav 0.67
Clamav Clamav 0.66
Clamav Clamav 0.51
Clamav Clamav 0.3
Clamav Clamav 0.14
Clamav Clamav 0.13
Clamav Clamav 0.93.2
Clamav Clamav 0.93.1
9.3
CVSSv2
CVE-2010-3434
Buffer overflow in the find_stream_bounds function in pdf.c in libclamav in ClamAV prior to 0.96.3 allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. NOTE: some of these details are obtaine...
Clamav Clamav 0.95.2
Clamav Clamav 0.86.2
Clamav Clamav 0.88.5
Clamav Clamav 0.02
Clamav Clamav 0.92
Clamav Clamav 0.95
Clamav Clamav 0.15
Clamav Clamav 0.90
Clamav Clamav 0.75.1
Clamav Clamav 0.65
Clamav Clamav 0.88.7
Clamav Clamav 0.81
Clamav Clamav 0.86
Clamav Clamav 0.01
Clamav Clamav 0.92 P0
Clamav Clamav 0.85
Clamav Clamav 0.84
Clamav Clamav 0.3
Clamav Clamav 0.91.2 P0
Clamav Clamav 0.93.1
Clamav Clamav 0.95.1
Clamav Clamav 0.93
5
CVSSv2
CVE-2010-1311
The qtm_decompress function in libclamav/mspack.c in ClamAV prior to 0.96 allows remote malicious users to cause a denial of service (memory corruption and application crash) via a crafted CAB archive that uses the Quantum (aka .Q) compression format. NOTE: some of these details ...
Clamav Clamav 0.95.2
Clamav Clamav 0.86.2
Clamav Clamav 0.88.5
Clamav Clamav 0.02
Clamav Clamav 0.92
Clamav Clamav 0.95
Clamav Clamav 0.15
Clamav Clamav 0.90
Clamav Clamav 0.75.1
Clamav Clamav 0.65
Clamav Clamav 0.88.7
Clamav Clamav 0.81
Clamav Clamav 0.86
Clamav Clamav 0.01
Clamav Clamav 0.85
Clamav Clamav 0.84
Clamav Clamav 0.3
Clamav Clamav 0.93.1
Clamavs Clamav 0.04
Clamav Clamav 0.95.1
Clamav Clamav 0.93
Clamav Clamav 0.70
10
CVSSv2
CVE-2010-0098
ClamAV prior to 0.96 does not properly handle the (1) CAB and (2) 7z file formats, which allows remote malicious users to bypass virus detection via a crafted archive that is compatible with standard archive utilities.
Clamav Clamav 0.95.2
Clamav Clamav 0.86.2
Clamav Clamav 0.88.5
Clamav Clamav 0.02
Clamav Clamav 0.92
Clamav Clamav 0.95
Clamav Clamav 0.15
Clamav Clamav 0.90
Clamav Clamav 0.75.1
Clamav Clamav 0.65
Clamav Clamav 0.88.7
Clamav Clamav 0.81
Clamav Clamav 0.86
Clamav Clamav 0.01
Clamav Clamav 0.85
Clamav Clamav 0.84
Clamav Clamav 0.3
Clamav Clamav 0.93.1
Clamavs Clamav 0.04
Clamav Clamav 0.95.1
Clamav Clamav 0.93
Clamav Clamav 0.70
5
CVSSv2
CVE-2011-2721
Off-by-one error in the cli_hm_scan function in matcher-hash.c in libclamav in ClamAV prior to 0.97.2 allows remote malicious users to cause a denial of service (daemon crash) via an e-mail message that is not properly handled during certain hash calculations.
Clamav Clamav 0.95.2
Clamav Clamav 0.86.2
Clamav Clamav 0.88.5
Clamav Clamav 0.02
Clamav Clamav 0.92
Clamav Clamav 0.95
Clamav Clamav 0.8
Clamav Clamav 0.15
Clamav Clamav 0.90
Clamav Clamav 0.75.1
Clamav Clamav 0.65
Clamav Clamav 0.88.7
Clamav Clamav 0.81
Clamav Clamav 0.86
Clamav Clamav 0.01
Clamav Clamav 0.92 P0
Clamav Clamav 0.97
Clamav Clamav 0.85
Clamav Clamav 0.84
Clamav Clamav 0.3
Clamav Clamav 0.91.2 P0
Clamav Clamav 0.93.1
6.8
CVSSv2
CVE-2011-1003
Double free vulnerability in the vba_read_project_strings function in vba_extract.c in libclamav in ClamAV prior to 0.97 might allow remote malicious users to execute arbitrary code via crafted Visual Basic for Applications (VBA) data in a Microsoft Office document. NOTE: some of...
Clamav Clamav
Clamav Clamav 0.95.2
Clamav Clamav 0.86.2
Clamav Clamav 0.88.5
Clamav Clamav 0.02
Clamav Clamav 0.92
Clamav Clamav 0.95
Clamav Clamav 0.8
Clamav Clamav 0.15
Clamav Clamav 0.90
Clamav Clamav 0.75.1
Clamav Clamav 0.65
Clamav Clamav 0.88.7
Clamav Clamav 0.81
Clamav Clamav 0.86
Clamav Clamav 0.01
Clamav Clamav 0.92 P0
Clamav Clamav 0.85
Clamav Clamav 0.84
Clamav Clamav 0.3
Clamav Clamav 0.91.2 P0
Clamav Clamav 0.93.1
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
CVE-2006-4304
CVE-2023-26603
CVE-2024-28327
CVE-2023-50363
CVE-2024-21905
template injection
CVE-2024-3400
cross-site request forgery
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »