Search CVE reports


Toggle filters

61 – 70 of 166 results


CVE-2017-6419

Medium priority

Some fixes available 3 of 4

mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted CHM file.

2 affected packages

clamav, libmspack

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav Not affected Not affected Not affected Not affected Not affected
libmspack Not affected Not affected Not affected Not affected Fixed
Show less packages

CVE-2017-6418

Medium priority
Fixed

libclamav/message.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted e-mail message.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav Fixed
Show less packages

CVE-2017-11423

Medium priority

Some fixes available 2 of 4

The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a...

2 affected packages

clamav, libmspack

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav Not affected Not affected Not affected Not affected Not affected
libmspack Not affected Not affected Not affected Not affected Fixed
Show less packages

CVE-2016-1372

Medium priority

Some fixes available 3 of 4

ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted 7z file.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav Fixed
Show less packages

CVE-2016-1371

Medium priority

Some fixes available 3 of 4

ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted mew packer executable.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav Fixed
Show less packages

CVE-2016-1405

Medium priority

Some fixes available 3 of 4

libclamav in ClamAV (aka Clam AntiVirus), as used in Advanced Malware Protection (AMP) on Cisco Email Security Appliance (ESA) devices before 9.7.0-125 and Web Security Appliance (WSA) devices before 9.0.1-135 and 9.1.x before...

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav Fixed
Show less packages

CVE-2015-2668

Medium priority
Fixed

ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted xz archive file.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav
Show less packages

CVE-2015-2222

Medium priority
Fixed

ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted petite packed file.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav
Show less packages

CVE-2015-2221

Medium priority
Fixed

ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted y0da cryptor file.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav
Show less packages

CVE-2015-2170

Medium priority
Fixed

The upx decoder in ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted file.

1 affected package

clamav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
clamav
Show less packages