CVE-2007-3122 — Anti-virus Clamav vulnerability
6 documents6 sources
Severity
5.0MEDIUMNVD
EPSS
2.7%
top 14.18%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 7
Latest updateMay 1
Description
The parsing engine in ClamAV before 0.90.3 and 0.91 before 0.91rc1 allows remote attackers to bypass scanning via a RAR file with a header flag value of 10, which can be processed by WinRAR.
CVSS vector
AV:N/AC:L/C:N/I:P/A:NExploitability: 10.0 | Impact: 2.9
Affected Packages2 packages
Patches
🔴Vulnerability Details
3📋Vendor Advisories
1Debian▶
CVE-2007-3122: clamav - The parsing engine in ClamAV before 0.90.3 and 0.91 before 0.91rc1 allows remote...↗2007