<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – ClamAV</title>
  <link>https://cvedaily.com/pages/tags/clamav.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/clamav.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – ClamAV</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:57 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-34792 – Endian Firewall version 3.3.25 and prior allow authenticated users to execute ar...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34792</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34792</guid>
    <pubDate>Thu, 02 Apr 2026 15:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34792</strong></p>
  <p>Endian Firewall version 3.3.25 and prior allow authenticated users to execute arbitrary OS commands via the DATE parameter to /cgi-bin/logs_clamav.cgi. The DATE parameter value is used to construct a file path that is passed to a Perl open() call, which allows command injection due to an incomplete regular expression validation.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34792">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-20031 – A vulnerability in the HTML Cascading Style Sheets (CSS) module of ClamAV could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20031</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20031</guid>
    <pubDate>Wed, 04 Mar 2026 18:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-20031</strong></p>
  <p>A vulnerability in the HTML Cascading Style Sheets (CSS) module of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.  This vulnerability is due to improper error handling when splitting UTF-8 strings. An attacker could exploit this vulnerability by submitting a crafted HTML file to be scanned by ClamAV on an affected devic…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-248</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20031">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-27466 – BigBlueButton is an open-source virtual classroom. In versions 3.0.21 and below,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27466</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27466</guid>
    <pubDate>Sat, 21 Feb 2026 08:16:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-27466</strong></p>
  <p>BigBlueButton is an open-source virtual classroom. In versions 3.0.21 and below, the official documentation for "Server Customization" on Support for ClamAV as presentation file scanner contains instructions that leave a BBB server vulnerable for Denial of Service. The flawed command exposes both ports (3310 and 7357) to the internet. A remote attacker can use this to send complex or large docume…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27466">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-37167 – ClamAV versions prior to 0.103.0-rc contain a vulnerability in function name pro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-37167</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-37167</guid>
    <pubDate>Thu, 12 Feb 2026 23:16:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-37167</strong></p>
  <p>ClamAV versions prior to 0.103.0-rc contain a vulnerability in function name processing through the ClamBC bytecode interpreter that allows attackers to manipulate bytecode function names. Attackers can exploit the weak input validation in function name encoding to potentially execute malicious bytecode or cause unexpected behavior in the ClamAV engine.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-37167">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-20260 – A vulnerability in the PDF scanning processes of ClamAV could allow an unauthent...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-20260</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-20260</guid>
    <pubDate>Wed, 18 Jun 2025 18:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-20260</strong></p>
  <p>A vulnerability in the PDF scanning processes of ClamAV could allow an unauthenticated, remote attacker to cause a buffer overflow condition, cause a denial of service (DoS) condition, or execute arbitrary code on an affected device.  This vulnerability exists because memory buffers are allocated incorrectly when PDF files are processed. An attacker could exploit this vulnerability by submittin…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-20260">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-20234 – A vulnerability in Universal Disk Format (UDF) processing of ClamAV could allow ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-20234</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-20234</guid>
    <pubDate>Wed, 18 Jun 2025 17:15:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-20234</strong></p>
  <p>A vulnerability in Universal Disk Format (UDF) processing of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.  This vulnerability is due to a memory overread during UDF file scanning. An attacker could exploit this vulnerability by submitting a crafted file containing UDF content to be scanned by ClamAV on an affected dev…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-20234">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-20128 – A vulnerability in the Object Linking and Embedding 2 (OLE2) decryption routine ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-20128</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-20128</guid>
    <pubDate>Wed, 22 Jan 2025 17:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-20128</strong></p>
  <p>A vulnerability in the Object Linking and Embedding 2 (OLE2) decryption routine of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.  This vulnerability is due to an integer underflow in a bounds check that allows for a heap buffer overflow read. An attacker could exploit this vulnerability by submitting a crafted file con…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-20128">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-20506 – A vulnerability in the ClamD service module of Clam AntiVirus (ClamAV) versions ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-20506</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-20506</guid>
    <pubDate>Wed, 04 Sep 2024 22:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-20506</strong></p>
  <p>A vulnerability in the ClamD service module of Clam AntiVirus (ClamAV) versions 1.4.0, 1.3.2 and prior versions, all 1.2.x versions, 1.0.6 and prior versions, all 0.105.x versions, all 0.104.x versions, and 0.103.11 and all prior versions could allow an authenticated, local attacker to corrupt critical system files.  The vulnerability is due to allowing the ClamD process to write to its log fil…</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-754</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-20506">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-20505 – A vulnerability in the PDF parsing module of Clam AntiVirus (ClamAV) versions 1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-20505</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-20505</guid>
    <pubDate>Wed, 04 Sep 2024 22:15:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-20505</strong></p>
  <p>A vulnerability in the PDF parsing module of Clam AntiVirus (ClamAV) versions 1.4.0, 1.3.2 and prior versions, all 1.2.x versions, 1.0.6 and prior versions, all 0.105.x versions, all 0.104.x versions, and 0.103.11 and all prior versions could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.  The vulnerability is due to an out of bound…</p>
  <p><strong>CVSS:</strong> 4.0 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-20505">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-20380 – A vulnerability in the HTML parser of ClamAV could allow an unauthenticated, rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-20380</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-20380</guid>
    <pubDate>Thu, 18 Apr 2024 20:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-20380</strong></p>
  <p>A vulnerability in the HTML parser of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to an issue in the C to Rust foreign function interface. An attacker could exploit this vulnerability by submitting a crafted file containing HTML content to be scanned by ClamAV on an affected device. An exploit…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-475</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-20380">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-20328 – A vulnerability in the VirusEvent feature of ClamAV could allow a local attacker...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-20328</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-20328</guid>
    <pubDate>Fri, 01 Mar 2024 21:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-20328</strong></p>
  <p>A vulnerability in the VirusEvent feature of ClamAV could allow a local attacker to inject arbitrary commands with the privileges of the application service account.The vulnerability is due to unsafe handling of file names. A local attacker could exploit this vulnerability by supplying a file name containing command-line sequences. When processed on a system using configuration options for the Vi…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-20328">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-20290 – A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthen...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-20290</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-20290</guid>
    <pubDate>Wed, 07 Feb 2024 17:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-20290</strong></p>
  <p>A vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.  This vulnerability is due to an incorrect check for end-of-string values during scanning, which may result in a heap buffer over-read. An attacker could exploit this vulnerability by submitting a crafted file containing OLE…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-126</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-20290">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-20212 – A vulnerability in the AutoIt module of ClamAV could allow an unauthenticated, r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-20212</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-20212</guid>
    <pubDate>Fri, 18 Aug 2023 20:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-20212</strong></p>
  <p>A vulnerability in the AutoIt module of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.   This vulnerability is due to a logic error in the memory management of an affected device. An attacker could exploit this vulnerability by submitting a crafted AutoIt file to be scanned by ClamAV on the affected device. A successful…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-825</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-20212">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-20197 – A vulnerability in the filesystem image parser for Hierarchical File System Plus...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-20197</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-20197</guid>
    <pubDate>Wed, 16 Aug 2023 22:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-20197</strong></p>
  <p>A vulnerability in the filesystem image parser for Hierarchical File System Plus (HFS+) of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.  This vulnerability is due to an incorrect check for completion when a file is decompressed, which may result in a loop condition that could cause the affected software to stop respon…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-835</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-20197">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-20052 – On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-20052</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-20052</guid>
    <pubDate>Wed, 01 Mar 2023 08:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-20052</strong></p>
  <p>On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed:   A vulnerability in the DMG file parser of ClamAV versions 1.0.0 and earlier, 0.105.1 and earlier, and 0.103.7 and earlier could allow an unauthenticated, remote attacker to access sensitive information on an affected device.   This vulnerability is due to enabling XML entity substitution that may re…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-611</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-20052">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-20032 – On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-20032</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-20032</guid>
    <pubDate>Wed, 01 Mar 2023 08:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-20032</strong></p>
  <p>On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed:   A vulnerability in the HFS+ partition file parser of ClamAV versions 1.0.0 and earlier, 0.105.1 and earlier, and 0.103.7 and earlier could allow an unauthenticated, remote attacker to execute arbitrary code.   This vulnerability is due to a missing buffer size check that may result in a heap buffer…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-20032">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-20803 – A vulnerability in the OLE2 file parser of Clam AntiVirus (ClamAV) versions 0.10...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-20803</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-20803</guid>
    <pubDate>Fri, 17 Feb 2023 18:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-20803</strong></p>
  <p>A vulnerability in the OLE2 file parser of Clam AntiVirus (ClamAV) versions 0.104.0 through 0.104.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device.The vulnerability is due to incorrect use of the realloc function that may result in a double-free. An attacker could exploit this vulnerability by submitting a crafted OLE2 file to be scann…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-20803">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-20792 – A vulnerability in the regex module used by the signature database load module o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-20792</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-20792</guid>
    <pubDate>Wed, 10 Aug 2022 09:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-20792</strong></p>
  <p>A vulnerability in the regex module used by the signature database load module of Clam AntiVirus (ClamAV) versions 0.104.0 through 0.104.2 and LTS version 0.103.5 and prior versions could allow an authenticated, local attacker to crash ClamAV at database load time, and possibly gain code execution. The vulnerability is due to improper bounds checking that may result in a multi-byte heap buffer ov…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-20792">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-20796 – On May 4, 2022, the following vulnerability in the ClamAV scanning library versi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-20796</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-20796</guid>
    <pubDate>Wed, 04 May 2022 17:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-20796</strong></p>
  <p>On May 4, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 and earlier was disclosed: A vulnerability in Clam AntiVirus (ClamAV) versions 0.103.4, 0.103.5, 0.104.1, and 0.104.2 could allow an authenticated, local attacker to cause a denial of service condition on an affected device. For a description of this vulnerability, see the ClamAV bl…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-822</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-20796">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-20785 – On April 20, 2022, the following vulnerability in the ClamAV scanning library ve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-20785</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-20785</guid>
    <pubDate>Wed, 04 May 2022 17:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-20785</strong></p>
  <p>On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 and earlier was disclosed: A vulnerability in HTML file parser of Clam AntiVirus (ClamAV) versions 0.104.0 through 0.104.2 and LTS version 0.103.5 and prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. For…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-20785">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-20771 – On April 20, 2022, the following vulnerability in the ClamAV scanning library ve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-20771</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-20771</guid>
    <pubDate>Wed, 04 May 2022 17:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-20771</strong></p>
  <p>On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 and earlier was disclosed: A vulnerability in the TIFF file parser of Clam AntiVirus (ClamAV) versions 0.104.0 through 0.104.2 and LTS version 0.103.5 and prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device.…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-20771">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-20770 – On April 20, 2022, the following vulnerability in the ClamAV scanning library ve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-20770</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-20770</guid>
    <pubDate>Wed, 04 May 2022 17:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-20770</strong></p>
  <p>On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 and earlier was disclosed: A vulnerability in CHM file parser of Clam AntiVirus (ClamAV) versions 0.104.0 through 0.104.2 and LTS version 0.103.5 and prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. For a…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-20770">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-20698 – A vulnerability in the OOXML parsing module in Clam AntiVirus (ClamAV) Software ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-20698</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-20698</guid>
    <pubDate>Fri, 14 Jan 2022 06:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-20698</strong></p>
  <p>A vulnerability in the OOXML parsing module in Clam AntiVirus (ClamAV) Software version 0.104.1 and LTS version 0.103.4 and prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to improper checks that may result in an invalid pointer read. An attacker could exploit this vulnerability by sending a craf…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-20698">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-1405 – A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-1405</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-1405</guid>
    <pubDate>Thu, 08 Apr 2021 05:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-1405</strong></p>
  <p>A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software version 0.103.1 and all prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to improper variable initialization that may result in an NULL pointer read. An attacker could exploit this vulnerability by sending a crafted em…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-1405">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-1404 – A vulnerability in the PDF parsing module in Clam AntiVirus (ClamAV) Software ve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-1404</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-1404</guid>
    <pubDate>Thu, 08 Apr 2021 05:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-1404</strong></p>
  <p>A vulnerability in the PDF parsing module in Clam AntiVirus (ClamAV) Software versions 0.103.0 and 0.103.1 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to improper buffer size tracking that may result in a heap buffer over-read. An attacker could exploit this vulnerability by sending a crafted PDF file to an…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-1404">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-1252 – A vulnerability in the Excel XLM macro parsing module in Clam AntiVirus (ClamAV)...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-1252</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-1252</guid>
    <pubDate>Thu, 08 Apr 2021 05:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-1252</strong></p>
  <p>A vulnerability in the Excel XLM macro parsing module in Clam AntiVirus (ClamAV) Software versions 0.103.0 and 0.103.1 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to improper error handling that may result in an infinite loop. An attacker could exploit this vulnerability by sending a crafted Excel file to a…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-1252">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-1386 – A vulnerability in the dynamic link library (DLL) loading mechanism in Cisco Adv...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-1386</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-1386</guid>
    <pubDate>Thu, 08 Apr 2021 04:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-1386</strong></p>
  <p>A vulnerability in the dynamic link library (DLL) loading mechanism in Cisco Advanced Malware Protection (AMP) for Endpoints Windows Connector, ClamAV for Windows, and Immunet could allow an authenticated, local attacker to perform a DLL hijacking attack on an affected Windows system. To exploit this vulnerability, the attacker would need valid credentials on the system. The vulnerability is due…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-1386">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-27506 – The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-27506</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-27506</guid>
    <pubDate>Fri, 19 Mar 2021 15:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-27506</strong></p>
  <p>The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19, 3.11.7 and 4.2.1.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-27506">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-3481 – A vulnerability in the EGG archive parsing module in Clam AntiVirus (ClamAV) Sof...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-3481</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-3481</guid>
    <pubDate>Mon, 20 Jul 2020 18:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-3481</strong></p>
  <p>A vulnerability in the EGG archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.0 - 0.102.3 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a null pointer dereference. An attacker could exploit this vulnerability by sending a crafted EGG file to an affected device. An exploit could allow…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-3481">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-3341 – A vulnerability in the PDF archive parsing module in Clam AntiVirus (ClamAV) Sof...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-3341</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-3341</guid>
    <pubDate>Wed, 13 May 2020 03:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-3341</strong></p>
  <p>A vulnerability in the PDF archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.101 - 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a stack buffer overflow read. An attacker could exploit this vulnerability by sending a crafted PDF file to an affected device. An exploit could allow…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-3341">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-3327 – A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Sof...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-3327</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-3327</guid>
    <pubDate>Wed, 13 May 2020 03:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-3327</strong></p>
  <p>A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a heap buffer overflow read. An attacker could exploit this vulnerability by sending a crafted ARJ file to an affected device. An exploit could allow the atta…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-3327">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-7613 – clamscan through 1.2.0 is vulnerable to Command Injection. It is possible to inj...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-7613</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-7613</guid>
    <pubDate>Tue, 07 Apr 2020 14:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-7613</strong></p>
  <p>clamscan through 1.2.0 is vulnerable to Command Injection. It is possible to inject arbitrary commands as part of the `_is_clamav_binary` function located within `Index.js`. It should be noted that this vulnerability requires a pre-requisite that a folder should be created with the same command that will be chained to execute. This lowers the risk of this issue.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-7613">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-3123 – A vulnerability in the Data-Loss-Prevention (DLP) module in Clam AntiVirus (Clam...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-3123</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-3123</guid>
    <pubDate>Wed, 05 Feb 2020 18:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-3123</strong></p>
  <p>A vulnerability in the Data-Loss-Prevention (DLP) module in Clam AntiVirus (ClamAV) Software versions 0.102.1 and 0.102.0 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to an out-of-bounds read affecting users that have enabled the optional DLP feature. An attacker could exploit this vulnerability by sending a…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-3123">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-15961 – A vulnerability in the email parsing module Clam AntiVirus (ClamAV) Software ver...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-15961</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-15961</guid>
    <pubDate>Wed, 15 Jan 2020 19:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-15961</strong></p>
  <p>A vulnerability in the email parsing module Clam AntiVirus (ClamAV) Software versions 0.102.0, 0.101.4 and prior could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to inefficient MIME parsing routines that result in extremely long scan times of specially formatted email files. An attacker could exploit this vulner…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-15961">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-7089 – ClamAV before 0.97.7: dbg_printhex possible information leak</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-7089</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-7089</guid>
    <pubDate>Fri, 15 Nov 2019 15:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-7089</strong></p>
  <p>ClamAV before 0.97.7: dbg_printhex possible information leak</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-7089">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2013-7088 – ClamAV before 0.97.7 has buffer overflow in the libclamav component</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-7088</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-7088</guid>
    <pubDate>Fri, 15 Nov 2019 15:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2013-7088</strong></p>
  <p>ClamAV before 0.97.7 has buffer overflow in the libclamav component</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-7088">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2013-7087 – ClamAV before 0.97.7 has WWPack corrupt heap memory</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-7087</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-7087</guid>
    <pubDate>Fri, 15 Nov 2019 15:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2013-7087</strong></p>
  <p>ClamAV before 0.97.7 has WWPack corrupt heap memory</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-7087">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2007-6745 – clamav 0.91.2 suffers from a floating point exception when using ScanOLE2.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-6745</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-6745</guid>
    <pubDate>Thu, 07 Nov 2019 23:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2007-6745</strong></p>
  <p>clamav 0.91.2 suffers from a floating point exception when using ScanOLE2.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-6745">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-1789 – ClamAV versions prior to 0.101.2 are susceptible to a denial of service (DoS) vu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-1789</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-1789</guid>
    <pubDate>Tue, 05 Nov 2019 19:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-1789</strong></p>
  <p>ClamAV versions prior to 0.101.2 are susceptible to a denial of service (DoS) vulnerability. An out-of-bounds heap read condition may occur when scanning PE files. An example is Windows EXE and DLL files that have been packed using Aspack as a result of inadequate bound-checking.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-1789">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-12625 – ClamAV versions prior to 0.101.3 are susceptible to a zip bomb vulnerability whe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-12625</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-12625</guid>
    <pubDate>Tue, 05 Nov 2019 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-12625</strong></p>
  <p>ClamAV versions prior to 0.101.3 are susceptible to a zip bomb vulnerability where an unauthenticated attacker can cause a denial of service condition by sending crafted messages to an affected system.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-12625">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-20902 – cPanel before 71.9980.37 allows attackers to read root's crontab file by leverag...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-20902</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-20902</guid>
    <pubDate>Thu, 01 Aug 2019 15:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-20902</strong></p>
  <p>cPanel before 71.9980.37 allows attackers to read root's crontab file by leveraging ClamAV installation (SEC-408).</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-20902">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2018-20873 – cPanel before 74.0.8 allows local users to disable the ClamAV daemon (SEC-409).</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-20873</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-20873</guid>
    <pubDate>Thu, 01 Aug 2019 13:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2018-20873</strong></p>
  <p>cPanel before 74.0.8 allows local users to disable the ClamAV daemon (SEC-409).</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-20873">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-1798 – A vulnerability in the Portable Executable (PE) file scanning functionality of C...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-1798</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-1798</guid>
    <pubDate>Mon, 08 Apr 2019 20:29:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-1798</strong></p>
  <p>A vulnerability in the Portable Executable (PE) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a lack of proper input and validation checking mechanisms for PE files sent an affected device. An attacker could exploit…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-1798">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-1788 – A vulnerability in the Object Linking &amp; Embedding (OLE2) file scanning functiona...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-1788</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-1788</guid>
    <pubDate>Mon, 08 Apr 2019 20:29:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-1788</strong></p>
  <p>A vulnerability in the Object Linking & Embedding (OLE2) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a lack of proper input and validation checking mechanisms for OLE2 files sent an affected device. An attacker cou…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-1788">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-1787 – A vulnerability in the Portable Document Format (PDF) scanning functionality of ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-1787</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-1787</guid>
    <pubDate>Mon, 08 Apr 2019 19:29:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-1787</strong></p>
  <p>A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of proper data handling mechanisms within the device buffer while indexing remaining file data on an affecte…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-1787">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2019-1786 – A vulnerability in the Portable Document Format (PDF) scanning functionality of ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-1786</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-1786</guid>
    <pubDate>Mon, 08 Apr 2019 19:29:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2019-1786</strong></p>
  <p>A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of proper data handling mechanisms within the device buffer while indexing remaining file data on an affec…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-1786">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-1785 – A vulnerability in the RAR file scanning functionality of Clam AntiVirus (ClamAV...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-1785</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-1785</guid>
    <pubDate>Mon, 08 Apr 2019 19:29:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-1785</strong></p>
  <p>A vulnerability in the RAR file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a lack of proper error-handling mechanisms when processing nested RAR files sent to an affected device. An attacker could exploit this vulner…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-1785">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-15378 – A vulnerability in ClamAV versions prior to 0.100.2 could allow an attacker to c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-15378</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-15378</guid>
    <pubDate>Mon, 15 Oct 2018 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-15378</strong></p>
  <p>A vulnerability in ClamAV versions prior to 0.100.2 could allow an attacker to cause a denial of service (DoS) condition. The vulnerability is due to an error related to the MEW unpacker within the "unmew11()" function (libclamav/mew.c), which can be exploited to trigger an invalid read memory access via a specially crafted EXE file.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-15378">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2018-0361 – ClamAV before 0.100.1 lacks a PDF object length check, resulting in an unreasona...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-0361</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-0361</guid>
    <pubDate>Mon, 16 Jul 2018 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2018-0361</strong></p>
  <p>ClamAV before 0.100.1 lacks a PDF object length check, resulting in an unreasonably long time to parse a relatively small file.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-0361">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-0360 – ClamAV before 0.100.1 has an HWP integer overflow with a resultant infinite loop...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-0360</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-0360</guid>
    <pubDate>Mon, 16 Jul 2018 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-0360</strong></p>
  <p>ClamAV before 0.100.1 has an HWP integer overflow with a resultant infinite loop via a crafted Hangul Word Processor file. This is in parsehwp3_paragraph() in libclamav/hwp.c.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-0360">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-11196 – Mahara 17.04 before 17.04.8 and 17.10 before 17.10.5 and 18.04 before 18.04.1 ca...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-11196</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-11196</guid>
    <pubDate>Fri, 01 Jun 2018 19:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-11196</strong></p>
  <p>Mahara 17.04 before 17.04.8 and 17.10 before 17.10.5 and 18.04 before 18.04.1 can be used as medium to transmit viruses by placing infected files into a Leap2A archive and uploading that to Mahara. In contrast to other ZIP files that are uploaded, ClamAV (when activated) does not check Leap2A archives for viruses, allowing malicious files to be available for download. While files cannot be execut…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-11196">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-0202 – clamscan in ClamAV before 0.99.4 contains a vulnerability that could allow an un...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-0202</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-0202</guid>
    <pubDate>Tue, 27 Mar 2018 09:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-0202</strong></p>
  <p>clamscan in ClamAV before 0.99.4 contains a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation checking mechanisms when handling Portable Document Format (.pdf) files sent to an affected device. An unauthenticated, remote attacker could exploit this vulnerabili…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-0202">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-1000085 – ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerab...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1000085</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1000085</guid>
    <pubDate>Tue, 13 Mar 2018 15:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-1000085</strong></p>
  <p>ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerability in XAR parser, function xar_hash_check() that can result in Leaking of memory, may help in developing exploit chains.. This attack appear to be exploitable via The victim must scan a crafted XAR file. This vulnerability appears to have been fixed in after commit d96a6b8bcc7439fa7e3876207aa0a8e79c8451b6.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1000085">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12380 – ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12380</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12380</guid>
    <pubDate>Fri, 26 Jan 2018 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12380</strong></p>
  <p>ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation checking mechanisms in mbox.c during certain mail parsing functions of the ClamAV software. An unauthenticated, remote attacker could exploit this v…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12380">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-12379 – ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12379</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12379</guid>
    <pubDate>Fri, 26 Jan 2018 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-12379</strong></p>
  <p>ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an affected device. The vulnerability is due to improper input validation checking mechanisms in the message parsing function on an affected system. An unauthenticated, remote attacker…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12379">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-12378 – ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12378</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12378</guid>
    <pubDate>Fri, 26 Jan 2018 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-12378</strong></p>
  <p>ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation checking mechanisms of .tar (Tape Archive) files sent to an affected device. A successful exploit could cause a checksum buffer over-read condition…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12378">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-12377 – ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12377</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12377</guid>
    <pubDate>Fri, 26 Jan 2018 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-12377</strong></p>
  <p>ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an affected device. The vulnerability is due to improper input validation checking mechanisms in mew packet files sent to an affected device. A successful exploit could cause a heap-ba…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12377">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12376 – ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12376</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12376</guid>
    <pubDate>Fri, 26 Jan 2018 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12376</strong></p>
  <p>ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an affected device. The vulnerability is due to improper input validation checking mechanisms when handling Portable Document Format (.pdf) files sent to an affected device. An unauthe…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12376">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12375 – The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12375</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12375</guid>
    <pubDate>Fri, 26 Jan 2018 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12375</strong></p>
  <p>The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of input validation checking mechanisms during certain mail parsing functions (the rfc2047 function in mbox.c). An unauthenticated, remote attacker could exploit t…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12375">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12374 – The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12374</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12374</guid>
    <pubDate>Fri, 26 Jan 2018 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12374</strong></p>
  <p>The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of input validation checking mechanisms during certain mail parsing operations (mbox.c operations on bounce messages). If successfully exploited, the ClamAV softwa…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12374">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-6420 – The wwunpack function in libclamav/wwunpack.c in ClamAV 0.99.2 allows remote att...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-6420</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-6420</guid>
    <pubDate>Mon, 07 Aug 2017 03:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-6420</strong></p>
  <p>The wwunpack function in libclamav/wwunpack.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (use-after-free) via a crafted PE file with WWPack compression.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-6420">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-6419 – mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows remote att...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-6419</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-6419</guid>
    <pubDate>Mon, 07 Aug 2017 03:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-6419</strong></p>
  <p>mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted CHM file.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-6419">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-6418 – libclamav/message.c in ClamAV 0.99.2 allows remote attackers to cause a denial o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-6418</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-6418</guid>
    <pubDate>Mon, 07 Aug 2017 03:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-6418</strong></p>
  <p>libclamav/message.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted e-mail message.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-6418">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-11423 – The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-11423</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-11423</guid>
    <pubDate>Tue, 18 Jul 2017 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-11423</strong></p>
  <p>The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted CAB file.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-11423">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2016-1372 – ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a den...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-1372</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-1372</guid>
    <pubDate>Mon, 03 Oct 2016 18:59:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2016-1372</strong></p>
  <p>ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted 7z file.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-1372">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2016-1371 – ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a den...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-1371</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-1371</guid>
    <pubDate>Mon, 03 Oct 2016 18:59:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2016-1371</strong></p>
  <p>ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted mew packer executable.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-1371">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-1405 – libclamav in ClamAV (aka Clam AntiVirus), as used in Advanced Malware Protection...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-1405</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-1405</guid>
    <pubDate>Wed, 08 Jun 2016 14:59:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-1405</strong></p>
  <p>libclamav in ClamAV (aka Clam AntiVirus), as used in Advanced Malware Protection (AMP) on Cisco Email Security Appliance (ESA) devices before 9.7.0-125 and Web Security Appliance (WSA) devices before 9.0.1-135 and 9.1.x before 9.1.1-041, allows remote attackers to cause a denial of service (AMP process restart) via a crafted document, aka Bug IDs CSCuv78533 and CSCuw60503.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-1405">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2015-2668 – ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infin...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-2668</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-2668</guid>
    <pubDate>Tue, 12 May 2015 19:59:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2015-2668</strong></p>
  <p>ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted xz archive file.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-2668">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2015-2222 – ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-2222</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-2222</guid>
    <pubDate>Tue, 12 May 2015 19:59:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2015-2222</strong></p>
  <p>ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted petite packed file.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-2222">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2015-2221 – ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infin...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-2221</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-2221</guid>
    <pubDate>Tue, 12 May 2015 19:59:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2015-2221</strong></p>
  <p>ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted y0da cryptor file.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-2221">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2015-2170 – The upx decoder in ClamAV before 0.98.7 allows remote attackers to cause a denia...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-2170</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-2170</guid>
    <pubDate>Tue, 12 May 2015 19:59:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2015-2170</strong></p>
  <p>The upx decoder in ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted file.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-2170">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2015-1463 – ClamAV before 0.98.6 allows remote attackers to cause a denial of service (crash...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-1463</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-1463</guid>
    <pubDate>Tue, 03 Feb 2015 16:59:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2015-1463</strong></p>
  <p>ClamAV before 0.98.6 allows remote attackers to cause a denial of service (crash) via a crafted petite packer file, related to an "incorrect compiler optimization."</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-17</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-1463">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-1462 – ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a cr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-1462</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-1462</guid>
    <pubDate>Tue, 03 Feb 2015 16:59:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-1462</strong></p>
  <p>ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted upx packer file, related to a "heap out of bounds condition."</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-1462">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-1461 – ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a cr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-1461</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-1461</guid>
    <pubDate>Tue, 03 Feb 2015 16:59:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-1461</strong></p>
  <p>ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted (1) Yoda's crypter or (2) mew packer file, related to a "heap out of bounds condition."</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-1461">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-9328 – ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a cr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-9328</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-9328</guid>
    <pubDate>Tue, 03 Feb 2015 16:59:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-9328</strong></p>
  <p>ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted upack packer file, related to a "heap out of bounds condition."</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-9328">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2014-9050 – Heap-based buffer overflow in the cli_scanpe function in libclamav/pe.c in ClamA...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-9050</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-9050</guid>
    <pubDate>Mon, 01 Dec 2014 15:59:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2014-9050</strong></p>
  <p>Heap-based buffer overflow in the cli_scanpe function in libclamav/pe.c in ClamAV before 0.98.5 allows remote attackers to cause a denial of service (crash) via a crafted y0da Crypter PE file.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-9050">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2013-6497 – clamscan in ClamAV before 0.98.5, when using -a option, allows remote attackers ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-6497</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-6497</guid>
    <pubDate>Mon, 01 Dec 2014 15:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2013-6497</strong></p>
  <p>clamscan in ClamAV before 0.98.5, when using -a option, allows remote attackers to cause a denial of service (crash) as demonstrated by the jwplayer.js file.</p>
  <p><strong>CVSS:</strong> 2.1 · <strong>CWE:</strong> CWE-17</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-6497">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2013-2021 – pdf.c in ClamAV 0.97.1 through 0.97.7 allows remote attackers to cause a denial ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-2021</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-2021</guid>
    <pubDate>Mon, 13 May 2013 23:55:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2013-2021</strong></p>
  <p>pdf.c in ClamAV 0.97.1 through 0.97.7 allows remote attackers to cause a denial of service (out-of-bounds-read) via a crafted length value in an encrypted PDF file.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-2021">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2013-2020 – Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 all...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-2020</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-2020</guid>
    <pubDate>Mon, 13 May 2013 23:55:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2013-2020</strong></p>
  <p>Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an out-of-bounds read.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-189</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-2020">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2012-2244 – Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote authenticated adm...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-2244</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-2244</guid>
    <pubDate>Sat, 24 Nov 2012 20:55:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2012-2244</strong></p>
  <p>Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote authenticated administrators to execute arbitrary programs by modifying the path to clamav.  NOTE: this can be exploited without authentication by leveraging CVE-2012-2243.</p>
  <p><strong>CVSS:</strong> 6.0 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-2244">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2012-2243 – Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-2243</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-2243</guid>
    <pubDate>Sat, 24 Nov 2012 20:55:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2012-2243</strong></p>
  <p>Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to inject arbitrary web script or HTML by uploading an XML file with the xhtml extension, which is rendered inline as script.  NOTE: this can be leveraged with CVE-2012-2244 to execute arbitrary code without authentication, as demonstrated by modifying the clamav path.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-2243">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2012-1459 – The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1459</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1459</guid>
    <pubDate>Wed, 21 Mar 2012 10:11:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2012-1459</strong></p>
  <p>The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, ClamAV 0.96.4, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, F-Prot Antivirus 4.6.2.117, F-Secure Anti-Virus 9.0.1616…</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1459">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2012-1458 – The Microsoft CHM file parser in ClamAV 0.96.4 and Sophos Anti-Virus 4.61.0 allo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1458</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1458</guid>
    <pubDate>Wed, 21 Mar 2012 10:11:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2012-1458</strong></p>
  <p>The Microsoft CHM file parser in ClamAV 0.96.4 and Sophos Anti-Virus 4.61.0 allows remote attackers to bypass malware detection via a crafted reset interval in the LZXC header of a CHM file.  NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different CHM parser implementations.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1458">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2012-1457 – The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, ava...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1457</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1457</guid>
    <pubDate>Wed, 21 Mar 2012 10:11:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2012-1457</strong></p>
  <p>The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, ClamAV 0.96.4, Command Antivirus 5.2.11.5, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, G Data AntiVirus 21, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0,…</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1457">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2012-1443 – The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1443</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1443</guid>
    <pubDate>Wed, 21 Mar 2012 10:11:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2012-1443</strong></p>
  <p>The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Command Antivirus 5.2.11.5, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Emsisoft Anti-Malware 5.1.0.1, PC Tools AntiVirus 7.0.3.5, F-Prot Antivirus 4.6.2.117, VirusBuster 13.6.151.0, Fortinet Antiviru…</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1443">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2012-1419 – The TAR file parser in ClamAV 0.96.4 and Quick Heal (aka Cat QuickHeal) 11.00 al...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1419</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1419</guid>
    <pubDate>Wed, 21 Mar 2012 10:11:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2012-1419</strong></p>
  <p>The TAR file parser in ClamAV 0.96.4 and Quick Heal (aka Cat QuickHeal) 11.00 allows remote attackers to bypass malware detection via a POSIX TAR file with an initial [aliases] character sequence. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1419">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2011-3627 – The bytecode engine in ClamAV before 0.97.3 allows remote attackers to cause a d...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2011-3627</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2011-3627</guid>
    <pubDate>Thu, 17 Nov 2011 19:55:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2011-3627</strong></p>
  <p>The bytecode engine in ClamAV before 0.97.3 allows remote attackers to cause a denial of service (crash) via vectors related to "recursion level" and (1) libclamav/bytecode.c and (2) libclamav/bytecode_api.c.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-189</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2011-3627">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2011-2721 – Off-by-one error in the cli_hm_scan function in matcher-hash.c in libclamav in C...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2011-2721</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2011-2721</guid>
    <pubDate>Fri, 05 Aug 2011 21:55:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2011-2721</strong></p>
  <p>Off-by-one error in the cli_hm_scan function in matcher-hash.c in libclamav in ClamAV before 0.97.2 allows remote attackers to cause a denial of service (daemon crash) via an e-mail message that is not properly handled during certain hash calculations.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-189</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2011-2721">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2011-1003 – Double free vulnerability in the vba_read_project_strings function in vba_extrac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2011-1003</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2011-1003</guid>
    <pubDate>Wed, 23 Feb 2011 19:00:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2011-1003</strong></p>
  <p>Double free vulnerability in the vba_read_project_strings function in vba_extract.c in libclamav in ClamAV before 0.97 might allow remote attackers to execute arbitrary code via crafted Visual Basic for Applications (VBA) data in a Microsoft Office document.  NOTE: some of these details are obtained from third party information.</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2011-1003">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2010-4479 – Unspecified vulnerability in pdf.c in libclamav in ClamAV before 0.96.5 allows r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-4479</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-4479</guid>
    <pubDate>Tue, 07 Dec 2010 13:53:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2010-4479</strong></p>
  <p>Unspecified vulnerability in pdf.c in libclamav in ClamAV before 0.96.5 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document, aka "bb #2380," a different vulnerability than CVE-2010-4260.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-4479">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2010-4261 – Off-by-one error in the icon_cb function in pe_icons.c in libclamav in ClamAV be...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-4261</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-4261</guid>
    <pubDate>Tue, 07 Dec 2010 13:53:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2010-4261</strong></p>
  <p>Off-by-one error in the icon_cb function in pe_icons.c in libclamav in ClamAV before 0.96.5 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.  NOTE: some of these details are obtained from third party information.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-189</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-4261">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2010-4260 – Multiple unspecified vulnerabilities in pdf.c in libclamav in ClamAV before 0.96...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-4260</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-4260</guid>
    <pubDate>Tue, 07 Dec 2010 13:53:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2010-4260</strong></p>
  <p>Multiple unspecified vulnerabilities in pdf.c in libclamav in ClamAV before 0.96.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document, aka (1) "bb #2358" and (2) "bb #2396."</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-4260">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2010-3434 – Buffer overflow in the find_stream_bounds function in pdf.c in libclamav in Clam...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-3434</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-3434</guid>
    <pubDate>Thu, 30 Sep 2010 15:00:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2010-3434</strong></p>
  <p>Buffer overflow in the find_stream_bounds function in pdf.c in libclamav in ClamAV before 0.96.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document.  NOTE: some of these details are obtained from third party information.</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-3434">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2010-1640 – Off-by-one error in the parseicon function in libclamav/pe_icons.c in ClamAV 0.9...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-1640</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-1640</guid>
    <pubDate>Wed, 26 May 2010 18:30:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2010-1640</strong></p>
  <p>Off-by-one error in the parseicon function in libclamav/pe_icons.c in ClamAV 0.96 allows remote attackers to cause a denial of service (crash) via a crafted PE icon that triggers an out-of-bounds read, related to improper rounding during scaling.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-189</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-1640">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2010-1639 – The cli_pdf function in libclamav/pdf.c in ClamAV before 0.96.1 allows remote at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-1639</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-1639</guid>
    <pubDate>Wed, 26 May 2010 18:30:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2010-1639</strong></p>
  <p>The cli_pdf function in libclamav/pdf.c in ClamAV before 0.96.1 allows remote attackers to cause a denial of service (crash) via a malformed PDF file, related to an inconsistency in the calculated stream length and the real stream length.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-1639">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2010-1311 – The qtm_decompress function in libclamav/mspack.c in ClamAV before 0.96 allows r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-1311</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-1311</guid>
    <pubDate>Thu, 08 Apr 2010 17:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2010-1311</strong></p>
  <p>The qtm_decompress function in libclamav/mspack.c in ClamAV before 0.96 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted CAB archive that uses the Quantum (aka .Q) compression format.  NOTE: some of these details are obtained from third party information.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-1311">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2010-0098 – ClamAV before 0.96 does not properly handle the (1) CAB and (2) 7z file formats,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-0098</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-0098</guid>
    <pubDate>Thu, 08 Apr 2010 17:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2010-0098</strong></p>
  <p>ClamAV before 0.96 does not properly handle the (1) CAB and (2) 7z file formats, which allows remote attackers to bypass virus detection via a crafted archive that is compatible with standard archive utilities.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-0098">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2010-0058 – freshclam in ClamAV in Apple Mac OS X 10.5.8 with Security Update 2009-005 has a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-0058</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-0058</guid>
    <pubDate>Tue, 30 Mar 2010 17:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2010-0058</strong></p>
  <p>freshclam in ClamAV in Apple Mac OS X 10.5.8 with Security Update 2009-005 has an incorrect launchd.plist ProgramArguments key and consequently does not run, which might allow remote attackers to introduce viruses into the system.</p>
  <p><strong>CVSS:</strong> 6.4 · <strong>CWE:</strong> CWE-16</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-0058">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2008-6845 – The unpack feature in ClamAV 0.93.3 and earlier allows remote attackers to cause...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-6845</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-6845</guid>
    <pubDate>Thu, 02 Jul 2009 10:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2008-6845</strong></p>
  <p>The unpack feature in ClamAV 0.93.3 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a corrupted LZH file.</p>
  <p><strong>CVSS:</strong> 5.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-6845">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2009-1601 – The Ubuntu clamav-milter.init script in clamav-milter before 0.95.1+dfsg-1ubuntu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-1601</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-1601</guid>
    <pubDate>Mon, 11 May 2009 15:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2009-1601</strong></p>
  <p>The Ubuntu clamav-milter.init script in clamav-milter before 0.95.1+dfsg-1ubuntu1.2 in Ubuntu 9.04 sets the ownership of the current working directory to the clamav account, which might allow local users to bypass intended access restrictions via read or write operations involving this directory.</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-1601">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
