cbcvebase.
CVE-2003-0946
published 2003-12-15

CVE-2003-0946: Format string vulnerability in clamav-milter for Clam AntiVirus 0.60 through 0.60p, and other versions before 0.65, allows remote attackers to cause a denial…

PriorityP427high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
3.11%
86.2th percentile
Format string vulnerability in clamav-milter for Clam AntiVirus 0.60 through 0.60p, and other versions before 0.65, allows remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in the email address argument of a "MAIL FROM" command.

Affected

7 ranges
VendorProductVersion rangeFixed in
clam_anti-virusclamav
clam_anti-virusclamav
clamavclamav>= 0 < 0.650.65
clamavclamav>= 0 < 0.650.65
clamavclamav>= 0 < 0.650.65
clamavclamav>= 0 < 0.650.65
debianclamav< clamav 0.65 (bookworm)clamav 0.65 (bookworm)

CVSS provenance

nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.