CVE-2004-1876Anti-virus Clamav vulnerability

5 documents5 sources
Severity
4.6MEDIUMNVD
EPSS
0.1%
top 68.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 30
Latest updateApr 29

Description

The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 0.70 allows local users to execute arbitrary commands via shell metacharacters in a file name.

CVSS vector

AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4

Affected Packages2 packages

Debianclamav/clamav< 0.70-1+3
NVDclam_anti-virus/clamav9 versions+8

Patches

🔴Vulnerability Details

3
GHSA
GHSA-6xg8-8xmf-qghw: The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 02022-04-29
CVEList
CVE-2004-1876: The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 02005-05-10
OSV
CVE-2004-1876: The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 02004-03-30

📋Vendor Advisories

1
Debian
CVE-2004-1876: clamav - The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) be...2004
CVE-2004-1876 — Clam Anti-virus Clamav vulnerability | cvebase