CVE-2021-1252

Severity
7.5HIGH
EPSS
0.5%
top 32.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 8
Latest updateMay 24

Description

A vulnerability in the Excel XLM macro parsing module in Clam AntiVirus (ClamAV) Software versions 0.103.0 and 0.103.1 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to improper error handling that may result in an infinite loop. An attacker could exploit this vulnerability by sending a crafted Excel file to an affected device. An exploit could allow the attacker to cause the ClamAV scanning process hang, res

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages4 packages

Debianclamav< 0.103.2+dfsg-1+3
Ubuntuclamav< 0.103.2+dfsg-0ubuntu0.16.04.1+7
CVEListV5cisco/clamav0.103.0, 0.103.1+1
NVDclamav/clamav0.103.0, 0.103.1+1

🔴Vulnerability Details

6
GHSA
GHSA-5qm5-4fjv-ghcw: A vulnerability in the Excel XLM macro parsing module in Clam AntiVirus (ClamAV) Software versions 02022-05-24
OSV
clamav regression2021-05-03
OSV
clamav vulnerabilities2021-04-20
OSV
clamav vulnerabilities2021-04-19
CVEList
Clam AntiVirus (ClamAV) Excel XLM Parser Denial of Service Vulnerability2021-04-08

📋Vendor Advisories

5
Ubuntu
ClamAV regression2021-05-03
Ubuntu
ClamAV vulnerabilities2021-04-20
Ubuntu
ClamAV vulnerabilities2021-04-19
Microsoft
Clam AntiVirus (ClamAV) Excel XLM Parser Denial of Service Vulnerability2021-04-13
Debian
CVE-2021-1252: clamav - A vulnerability in the Excel XLM macro parsing module in Clam AntiVirus (ClamAV)...2021

🕵️Threat Intelligence

2
Talos
Vulnerability Spotlight: Information disclosure, privilege escalation vulnerabilities in IOBit Advanced SystemCare Ultimate2021-07-07
Talos
Vulnerability Spotlight: Information disclosure, privilege escalation vulnerabilities in IOBit Advanced SystemCare Ultimate2021-07-07
CVE-2021-1252 (HIGH CVSS 7.5) | A vulnerability in the Excel XLM ma | cvebase.io