cbcvebase.

Debian Clamav vulnerabilities

155 known vulnerabilities affecting debian/clamav.

Total CVEs
155
CISA KEV
0
Public exploits
8
Exploited in wild
0
Severity breakdown
CRITICAL19HIGH40MEDIUM74LOW22

Vulnerabilities

Page 2 of 8
CVE-2008-1833P3MEDIUMCVSS 7.5fixed in clamav 0.92.1~dfsg2-1.1 (bookworm)2008
CVE-2008-1833 [HIGH] CVE-2008-1833: clamav - Heap-based buffer overflow in pe.c in libclamav in ClamAV 0.92.1 allows remote a... Heap-based buffer overflow in pe.c in libclamav in ClamAV 0.92.1 allows remote attackers to execute arbitrary code via a crafted WWPack compressed PE binary. Scope: local bookworm: resolved (fixed in 0.92.1~dfsg2-1.1) bullseye: resolved (fixed in 0.92.1~dfsg2-1.1) forky: resolved (fixed in 0.92.1~dfsg2-1.1) sid: resolved (fixed in 0.92.1~dfsg2-1.1) trixie: resolved (fi
debian
CVE-2009-1372P3CRITICALCVSS 10.0fixed in clamav 0.95.1+dfsg-1 (bookworm)2009
CVE-2009-1372 [CRITICAL] CVE-2009-1372: clamav - Stack-based buffer overflow in the cli_url_canon function in libclamav/phishchec... Stack-based buffer overflow in the cli_url_canon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted URL. Scope: local bookworm: resolved (fixed in 0.95.1+dfsg-1) bullseye: resolved (fixed in 0.95.1+dfsg-1) forky: resolved (fixed in 0.95
debian
CVE-2022-20771P3HIGHCVSS 7.5fixed in clamav 0.103.6+dfsg-1 (bookworm)2022
CVE-2022-20771 [HIGH] CVE-2022-20771: clamav - On April 20, 2022, the following vulnerability in the ClamAV scanning library ve... On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 and earlier was disclosed: A vulnerability in the TIFF file parser of Clam AntiVirus (ClamAV) versions 0.104.0 through 0.104.2 and LTS version 0.103.5 and prior versions could allow an unauthenticated, remote attacker to cause a denial of service con
debian
CVE-2008-0314P3MEDIUMCVSS 7.5fixed in clamav 0.92.1~dfsg2-1 (bookworm)2008
CVE-2008-0314 [HIGH] CVE-2008-0314: clamav - Heap-based buffer overflow in spin.c in libclamav in ClamAV 0.92.1 allows remote... Heap-based buffer overflow in spin.c in libclamav in ClamAV 0.92.1 allows remote attackers to execute arbitrary code via a crafted PeSpin packed PE binary with a modified length value. Scope: local bookworm: resolved (fixed in 0.92.1~dfsg2-1) bullseye: resolved (fixed in 0.92.1~dfsg2-1) forky: resolved (fixed in 0.92.1~dfsg2-1) sid: resolved (fixed in 0.92.1~dfsg2-1) t
debian
CVE-2015-2305P3LOWCVSS 6.8fixed in clamav 0.98.7+dfsg-1 (bookworm)2015
CVE-2015-2305 [MEDIUM] CVE-2015-2305: alpine - Integer overflow in the regcomp implementation in the Henry Spencer BSD regex li... Integer overflow in the regcomp implementation in the Henry Spencer BSD regex library (aka rxspencer) alpha3.8.g5 on 32-bit platforms, as used in NetBSD through 6.1.5 and other products, might allow context-dependent attackers to execute arbitrary code via a large regular expression that leads to a heap-based buffer overflow. Scope: local bookworm: resolved bullseye:
debian
CVE-2012-1458P3LOWCVSS 4.3fixed in clamav 0.97.5+dfsg-1 (bookworm)2012
CVE-2012-1458 [MEDIUM] CVE-2012-1458: clamav - The Microsoft CHM file parser in ClamAV 0.96.4 and Sophos Anti-Virus 4.61.0 allo... The Microsoft CHM file parser in ClamAV 0.96.4 and Sophos Anti-Virus 4.61.0 allows remote attackers to bypass malware detection via a crafted reset interval in the LZXC header of a CHM file. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different CHM parser implementations. Sco
debian
CVE-2017-12380P3HIGHCVSS 7.5fixed in clamav 0.99.3~beta2+dfsg-1 (bookworm)2017
CVE-2017-12380 [HIGH] CVE-2017-12380: clamav - ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that... ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation checking mechanisms in mbox.c during certain mail parsing functions of the ClamAV software. An unauthenticated, remote
debian
CVE-2020-3327P3HIGHCVSS 7.5fixed in clamav 0.102.4+dfsg-1 (bookworm)2020
CVE-2020-3327 [HIGH] CVE-2020-3327: clamav - A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Sof... A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a heap buffer overflow read. An attacker could exploit this vulnerability by sending a crafted ARJ file to an affected device. An
debian
CVE-2006-5295P4HIGHCVSS 5.0PoCfixed in clamav 0.88.5-1 (bookworm)2006
CVE-2006-5295 [MEDIUM] CVE-2006-5295: clamav - Unspecified vulnerability in ClamAV before 0.88.5 allows remote attackers to cau... Unspecified vulnerability in ClamAV before 0.88.5 allows remote attackers to cause a denial of service (scanning service crash) via a crafted Compressed HTML Help (CHM) file that causes ClamAV to "read an invalid memory location." Scope: local bookworm: resolved (fixed in 0.88.5-1) bullseye: resolved (fixed in 0.88.5-1) forky: resolved (fixed in 0.88.5-1) sid: resolv
debian
CVE-2008-0318P3MEDIUMCVSS 10.0fixed in clamav 0.92.1~dfsg-1 (bookworm)2008
CVE-2008-0318 [CRITICAL] CVE-2008-0318: clamav - Integer overflow in the cli_scanpe function in libclamav in ClamAV before 0.92.1... Integer overflow in the cli_scanpe function in libclamav in ClamAV before 0.92.1, as used in clamd, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Petite packed PE file, which triggers a heap-based buffer overflow. Scope: local bookworm: resolved (fixed in 0.92.1~dfsg-1) bullseye: resolved (fixed in 0.92.1~dfs
debian
CVE-2025-20128P3MEDIUMCVSS 5.3fixed in clamav 1.0.9+dfsg-1~deb12u1 (bookworm)2025
CVE-2025-20128 [MEDIUM] CVE-2025-20128: clamav - A vulnerability in the Object Linking and Embedding 2 (OLE2) decryption routine ... A vulnerability in the Object Linking and Embedding 2 (OLE2) decryption routine of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an integer underflow in a bounds check that allows for a heap buffer overflow read. An attacker could exploit this vulnerability by
debian
CVE-2007-6745P3CRITICALCVSS 9.8fixed in clamav 0.91.2-1~volatile1 (bookworm)2007
CVE-2007-6745 [CRITICAL] CVE-2007-6745: clamav - clamav 0.91.2 suffers from a floating point exception when using ScanOLE2. clamav 0.91.2 suffers from a floating point exception when using ScanOLE2. Scope: local bookworm: resolved (fixed in 0.91.2-1~volatile1) bullseye: resolved (fixed in 0.91.2-1~volatile1) forky: resolved (fixed in 0.91.2-1~volatile1) sid: resolved (fixed in 0.91.2-1~volatile1) trixie: resolved (fixed in 0.91.2-1~volatile1)
debian
CVE-2008-1100P3CRITICALCVSS 10.0fixed in clamav 0.92.1~dfsg2-1 (bookworm)2008
CVE-2008-1100 [CRITICAL] CVE-2008-1100: clamav - Buffer overflow in the cli_scanpe function in libclamav (libclamav/pe.c) for Cla... Buffer overflow in the cli_scanpe function in libclamav (libclamav/pe.c) for ClamAV 0.92 and 0.92.1 allows remote attackers to execute arbitrary code via a crafted Upack PE file. Scope: local bookworm: resolved (fixed in 0.92.1~dfsg2-1) bullseye: resolved (fixed in 0.92.1~dfsg2-1) forky: resolved (fixed in 0.92.1~dfsg2-1) sid: resolved (fixed in 0.92.1~dfsg2-1) tri
debian
CVE-2020-3341P3HIGHCVSS 7.5fixed in clamav 0.102.3+dfsg-1 (bookworm)2020
CVE-2020-3341 [HIGH] CVE-2020-3341: clamav - A vulnerability in the PDF archive parsing module in Clam AntiVirus (ClamAV) Sof... A vulnerability in the PDF archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.101 - 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a stack buffer overflow read. An attacker could exploit this vulnerability by sending a crafted PDF file to an affected de
debian
CVE-2013-7087P3CRITICALCVSS 9.8fixed in clamav 0.97.7+dfsg-1 (bookworm)2013
CVE-2013-7087 [CRITICAL] CVE-2013-7087: clamav - ClamAV before 0.97.7 has WWPack corrupt heap memory ClamAV before 0.97.7 has WWPack corrupt heap memory Scope: local bookworm: resolved (fixed in 0.97.7+dfsg-1) bullseye: resolved (fixed in 0.97.7+dfsg-1) forky: resolved (fixed in 0.97.7+dfsg-1) sid: resolved (fixed in 0.97.7+dfsg-1) trixie: resolved (fixed in 0.97.7+dfsg-1)
debian
CVE-2023-20212P3HIGHCVSS 7.5fixed in clamav 1.0.2+dfsg-1~deb12u1 (bookworm)2023
CVE-2023-20212 [HIGH] CVE-2023-20212: clamav - A vulnerability in the AutoIt module of ClamAV could allow an unauthenticated, r... A vulnerability in the AutoIt module of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to a logic error in the memory management of an affected device. An attacker could exploit this vulnerability by submitting a crafted AutoIt file to be scanned by ClamAV on the aff
debian
CVE-2008-5050P3CRITICALCVSS 9.3fixed in clamav 0.94.dfsg.1-1 (bookworm)2008
CVE-2008-5050 [CRITICAL] CVE-2008-5050: clamav - Off-by-one error in the get_unicode_name function (libclamav/vba_extract.c) in C... Off-by-one error in the get_unicode_name function (libclamav/vba_extract.c) in Clam Anti-Virus (ClamAV) before 0.94.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted VBA project file, which triggers a heap-based buffer overflow. Scope: local bookworm: resolved (fixed in 0.94.dfsg.1-1) bullseye: resolved
debian
CVE-2017-12374P3HIGHCVSS 7.5fixed in clamav 0.99.3~beta2+dfsg-1 (bookworm)2017
CVE-2017-12374 [HIGH] CVE-2017-12374: clamav - The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability ... The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of input validation checking mechanisms during certain mail parsing operations (mbox.c operations on bounce messages). If successfull
debian
CVE-2009-1241P3MEDIUMCVSS 7.5fixed in clamav 0.95+dfsg-1 (bookworm)2009
CVE-2009-1241 [HIGH] CVE-2009-1241: clamav - Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypas... Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypass detection of malware via a modified RAR archive. Scope: local bookworm: resolved (fixed in 0.95+dfsg-1) bullseye: resolved (fixed in 0.95+dfsg-1) forky: resolved (fixed in 0.95+dfsg-1) sid: resolved (fixed in 0.95+dfsg-1) trixie: resolved (fixed in 0.95+dfsg-1)
debian
CVE-2021-1405P3HIGHCVSS 7.5fixed in clamav 0.103.2+dfsg-1 (bookworm)2021
CVE-2021-1405 [HIGH] CVE-2021-1405: clamav - A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software ... A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software version 0.103.1 and all prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to improper variable initialization that may result in an NULL pointer read. An attacker could exploit this vulnerabi
debian
Debian Clamav vulnerabilities | cvebase