Description
libclamav/petite.c in ClamAV before 0.93.1 allows remote attackers to cause a denial of service via a crafted Petite file that triggers an out-of-bounds read.
CVSS vector
AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9Complexity: Low
Confidentiality: None
Integrity: None
Affected Packages2 packages
🔴Vulnerability Details
3GHSAGHSA-6fgm-5wrg-4p5q: libclamav/petite↗2022-05-01 ▶ OSVCVE-2008-2713: libclamav/petite↗2008-06-16 ▶ CVEListCVE-2008-2713: libclamav/petite↗2008-06-16 ▶ 📋Vendor Advisories
3Red Hatclamav: DoS / crash via crafted petite file (incomplete fix of CVE-2008-2713)↗2008-07-03 ▶ Red Hatclamav: DoS / crash via crafted petite file↗2008-06-15 ▶ DebianCVE-2008-2713: clamav - libclamav/petite.c in ClamAV before 0.93.1 allows remote attackers to cause a de...↗2008 ▶ 💬Community
2BugzillaCVE-2008-3215 clamav: DoS / crash via crafted petite file (incomplete fix of CVE-2008-2713)↗2008-07-15 ▶ BugzillaCVE-2008-2713 clamav: DoS / crash via crafted petite file↗2008-06-17 ▶