Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
clamav vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2019-1798
A vulnerability in the Portable Executable (PE) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allow an unauthenticated, remote malicious user to cause a denial of service condition on an affected device. The vulnerability is due ...
Clamav Clamav
890
VMScore
CVE-2008-3914
Multiple unspecified vulnerabilities in ClamAV prior to 0.94 have unknown impact and attack vectors related to file descriptor leaks on the "error path" in (1) libclamav/others.c and (2) libclamav/sis.c.
Clamav Clamav
NA
CVE-2022-20792
A vulnerability in the regex module used by the signature database load module of Clam AntiVirus (ClamAV) versions 0.104.0 up to and including 0.104.2 and LTS version 0.103.5 and prior versions could allow an authenticated, local malicious user to crash ClamAV at database load ti...
Clamav Clamav
NA
CVE-2022-20803
A vulnerability in the OLE2 file parser of Clam AntiVirus (ClamAV) versions 0.104.0 up to and including 0.104.2 could allow an unauthenticated, remote malicious user to cause a denial of service condition on an affected device.The vulnerability is due to incorrect use of the real...
Clamav Clamav
187
VMScore
CVE-2013-6497
clamscan in ClamAV prior to 0.98.5, when using -a option, allows remote malicious users to cause a denial of service (crash) as demonstrated by the jwplayer.js file.
Clamav Clamav
409
VMScore
CVE-2004-1876
The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) prior to 0.70 allows local users to execute arbitrary commands via shell metacharacters in a file name.
Clam Anti-virus Clamav 0.54
Clam Anti-virus Clamav 0.60
Clam Anti-virus Clamav 0.65
Clam Anti-virus Clamav 0.67
Clam Anti-virus Clamav 0.52
Clam Anti-virus Clamav 0.53
Clam Anti-virus Clamav 0.51
Clam Anti-virus Clamav 0.68
Clam Anti-virus Clamav 0.68.1
445
VMScore
CVE-2005-0218
ClamAV 0.80 and previous versions allows remote malicious users to bypass virus scanning via a base64 encoded image in a data: (RFC 2397) URL.
Clam Anti-virus Clamav 0.51
Clam Anti-virus Clamav 0.53
Clam Anti-virus Clamav 0.68
Clam Anti-virus Clamav 0.80
Clam Anti-virus Clamav 0.54
Clam Anti-virus Clamav 0.60
Clam Anti-virus Clamav 0.65
Clam Anti-virus Clamav 0.67
Clam Anti-virus Clamav 0.52
Clam Anti-virus Clamav 0.68.1
445
VMScore
CVE-2005-0133
ClamAV 0.80 and previous versions allows remote malicious users to cause a denial of service (clamd daemon crash) via a ZIP file with malformed headers.
Clam Anti-virus Clamav 0.53
Clam Anti-virus Clamav 0.54
Clam Anti-virus Clamav 0.60
Clam Anti-virus Clamav 0.65
Clam Anti-virus Clamav 0.52
Clam Anti-virus Clamav 0.67
Clam Anti-virus Clamav 0.68.1
Clam Anti-virus Clamav 0.51
Clam Anti-virus Clamav 0.68
Clam Anti-virus Clamav 0.80
385
VMScore
CVE-2008-1387
ClamAV prior to 0.93 allows remote malicious users to cause a denial of service (CPU consumption) via a crafted ARJ archive, as demonstrated by the PROTOS GENOME test suite for Archive Formats.
Clam Anti-virus Clamav 0.90 Rc1.1
Clam Anti-virus Clamav 0.90 Rc2
Clam Anti-virus Clamav 0.90 Rc3
Clam Anti-virus Clamav 0.90rc1
Clam Anti-virus Clamav 0.91
Clam Anti-virus Clamav 0.92
Clam Anti-virus Clamav 0.90
Clam Anti-virus Clamav 0.90.1
383
VMScore
CVE-2008-1836
The rfc2231 function in message.c in libclamav in ClamAV prior to 0.93 allows remote malicious users to cause a denial of service (crash) via a crafted message that produces a string that is not null terminated, which triggers a buffer over-read.
Clam Anti-virus Clamav 0.90 Rc3
Clam Anti-virus Clamav 0.90rc1
Clam Anti-virus Clamav 0.91
Clam Anti-virus Clamav 0.92
Clam Anti-virus Clamav 0.90 Rc1.1
Clam Anti-virus Clamav 0.90 Rc2
Clam Anti-virus Clamav 0.90
Clam Anti-virus Clamav 0.90.1
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4671
unauthorized
CVE-2024-4776
CVE-2024-3407
CVE-2024-26026
CVE-2024-32888
wireless
CVE-2024-4656
template injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »