7.5
CVSSv2

CVE-2014-9328

CVSSv4: NA | CVSSv3: NA | CVSSv2: 7.5 | VMScore: 850 | EPSS: 0.06402 | KEV: Not Included
Published: 03/02/2015 Updated: 12/04/2025

Vulnerability Summary

ClamAV prior to 0.98.6 allows remote malicious users to have unspecified impact via a crafted upack packer file, related to a "heap out of bounds condition."

Vulnerable Product Search on Vulmon Subscribe to Product

fedoraproject fedora 20

fedoraproject fedora 21

clamav clamav

Vendor Advisories

ClamAV could be made to crash or run programs if it processed a specially crafted file ...
ClamAV could be made to crash or run programs if it processed a specially crafted file ...
ClamAV before 0986 allows remote attackers to have unspecified impact via a crafted upack packer file, related to a "heap out of bounds condition" ...