5
CVSSv2

CVE-2015-2221

Published: 12/05/2015 Updated: 03/01/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

ClamAV prior to 0.98.7 allows remote malicious users to cause a denial of service (infinite loop) via a crafted y0da cryptor file.

Vulnerable Product Search on Vulmon Subscribe to Product

clamav clamav

canonical ubuntu linux 15.1

canonical ubuntu linux 14.10

canonical ubuntu linux 14.04

canonical ubuntu linux 12.04

Vendor Advisories

ClamAV could be made to crash or run programs if it processed a specially crafted file ...
ClamAV before 0987 allows remote attackers to cause a denial of service (infinite loop) via a crafted y0da cryptor file (CVE-2015-2221) ClamAV before 0987 allows remote attackers to cause a denial of service (infinite loop) via a crafted xz archive file (CVE-2015-2668) ClamAV before 0987 allows remote attackers to cause a denial of service ...