Debian Clamav vulnerabilities
155 known vulnerabilities affecting debian/clamav.
Total CVEs
155
CISA KEV
0
Public exploits
8
Exploited in wild
0
Severity breakdown
CRITICAL19HIGH40MEDIUM74LOW22
Vulnerabilities
Page 6 of 8
CVE-2007-3122P4MEDIUMCVSS 5.0fixed in clamav 0.90.3-1 (bookworm)2007
CVE-2007-3122 [MEDIUM] CVE-2007-3122: clamav - The parsing engine in ClamAV before 0.90.3 and 0.91 before 0.91rc1 allows remote...
The parsing engine in ClamAV before 0.90.3 and 0.91 before 0.91rc1 allows remote attackers to bypass scanning via a RAR file with a header flag value of 10, which can be processed by WinRAR.
Scope: local
bookworm: resolved (fixed in 0.90.3-1)
bullseye: resolved (fixed in 0.90.3-1)
forky: resolved (fixed in 0.90.3-1)
sid: resolved (fixed in 0.90.3-1)
trixie: resolved
debian
CVE-2013-2020P4MEDIUMCVSS 5.0fixed in clamav 0.97.8+dfsg-1 (bookworm)2013
CVE-2013-2020 [MEDIUM] CVE-2013-2020: clamav - Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 all...
Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an out-of-bounds read.
Scope: local
bookworm: resolved (fixed in 0.97.8+dfsg-1)
bullseye: resolved (fixed in 0.97.8+dfsg-1)
forky
debian
CVE-2019-1786P4MEDIUMCVSS 5.5fixed in clamav 0.101.2+dfsg-1 (bookworm)2019
CVE-2019-1786 [MEDIUM] CVE-2019-1786: clamav - A vulnerability in the Portable Document Format (PDF) scanning functionality of ...
A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of proper data handling mechanisms within the device buffer while indexing r
debian
CVE-2008-2713P4LOWCVSS 5.0fixed in clamav 0.93.1.dfsg-1.1 (bookworm)2008
CVE-2008-2713 [MEDIUM] CVE-2008-2713: clamav - libclamav/petite.c in ClamAV before 0.93.1 allows remote attackers to cause a de...
libclamav/petite.c in ClamAV before 0.93.1 allows remote attackers to cause a denial of service via a crafted Petite file that triggers an out-of-bounds read.
Scope: local
bookworm: resolved (fixed in 0.93.1.dfsg-1.1)
bullseye: resolved (fixed in 0.93.1.dfsg-1.1)
forky: resolved (fixed in 0.93.1.dfsg-1.1)
sid: resolved (fixed in 0.93.1.dfsg-1.1)
trixie: resolved (fix
debian
CVE-2010-1311P4LOWCVSS 5.0fixed in clamav 0.96+dfsg-2 (bookworm)2010
CVE-2010-1311 [MEDIUM] CVE-2010-1311: clamav - The qtm_decompress function in libclamav/mspack.c in ClamAV before 0.96 allows r...
The qtm_decompress function in libclamav/mspack.c in ClamAV before 0.96 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted CAB archive that uses the Quantum (aka .Q) compression format. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved (fixed in 0.96+dfsg-2)
debian
CVE-2015-2221P4MEDIUMCVSS 5.0fixed in clamav 0.98.7+dfsg-1 (bookworm)2015
CVE-2015-2221 [MEDIUM] CVE-2015-2221: clamav - ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infin...
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted y0da cryptor file.
Scope: local
bookworm: resolved (fixed in 0.98.7+dfsg-1)
bullseye: resolved (fixed in 0.98.7+dfsg-1)
forky: resolved (fixed in 0.98.7+dfsg-1)
sid: resolved (fixed in 0.98.7+dfsg-1)
trixie: resolved (fixed in 0.98.7+dfsg-1)
debian
CVE-2019-1798P4MEDIUMCVSS 5.5fixed in clamav 0.101.2+dfsg-1 (bookworm)2019
CVE-2019-1798 [MEDIUM] CVE-2019-1798: clamav - A vulnerability in the Portable Executable (PE) file scanning functionality of C...
A vulnerability in the Portable Executable (PE) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a lack of proper input and validation checking mechanisms for PE files sent an affected devi
debian
CVE-2006-1630P4MEDIUMCVSS 5.0fixed in clamav 0.88.1-1 (bookworm)2006
CVE-2006-1630 [MEDIUM] CVE-2006-1630: clamav - The cli_bitset_set function in libclamav/others.c in Clam AntiVirus (ClamAV) bef...
The cli_bitset_set function in libclamav/others.c in Clam AntiVirus (ClamAV) before 0.88.1 allows remote attackers to cause a denial of service via unspecified vectors that trigger an "invalid memory access."
Scope: local
bookworm: resolved (fixed in 0.88.1-1)
bullseye: resolved (fixed in 0.88.1-1)
forky: resolved (fixed in 0.88.1-1)
sid: resolved (fixed in 0.88.1-1)
debian
CVE-2008-3215P4MEDIUMCVSS 5.0fixed in clamav 0.93.1.dfsg-1.1 (bookworm)2008
CVE-2008-3215 [MEDIUM] CVE-2008-3215: clamav - libclamav/petite.c in ClamAV before 0.93.3 allows remote attackers to cause a de...
libclamav/petite.c in ClamAV before 0.93.3 allows remote attackers to cause a denial of service via a malformed Petite file that triggers an out-of-bounds memory access. NOTE: this issue exists because of an incomplete fix for CVE-2008-2713.
Scope: local
bookworm: resolved (fixed in 0.93.1.dfsg-1.1)
bullseye: resolved (fixed in 0.93.1.dfsg-1.1)
forky: resolved (fixed
debian
CVE-2015-2222P4MEDIUMCVSS 5.0fixed in clamav 0.98.7+dfsg-1 (bookworm)2015
CVE-2015-2222 [MEDIUM] CVE-2015-2222: clamav - ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash...
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted petite packed file.
Scope: local
bookworm: resolved (fixed in 0.98.7+dfsg-1)
bullseye: resolved (fixed in 0.98.7+dfsg-1)
forky: resolved (fixed in 0.98.7+dfsg-1)
sid: resolved (fixed in 0.98.7+dfsg-1)
trixie: resolved (fixed in 0.98.7+dfsg-1)
debian
CVE-2015-2668P4MEDIUMCVSS 5.0fixed in clamav 0.98.7+dfsg-1 (bookworm)2015
CVE-2015-2668 [MEDIUM] CVE-2015-2668: clamav - ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infin...
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted xz archive file.
Scope: local
bookworm: resolved (fixed in 0.98.7+dfsg-1)
bullseye: resolved (fixed in 0.98.7+dfsg-1)
forky: resolved (fixed in 0.98.7+dfsg-1)
sid: resolved (fixed in 0.98.7+dfsg-1)
trixie: resolved (fixed in 0.98.7+dfsg-1)
debian
CVE-2015-2170P4MEDIUMCVSS 5.0fixed in clamav 0.98.7+dfsg-1 (bookworm)2015
CVE-2015-2170 [MEDIUM] CVE-2015-2170: clamav - The upx decoder in ClamAV before 0.98.7 allows remote attackers to cause a denia...
The upx decoder in ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted file.
Scope: local
bookworm: resolved (fixed in 0.98.7+dfsg-1)
bullseye: resolved (fixed in 0.98.7+dfsg-1)
forky: resolved (fixed in 0.98.7+dfsg-1)
sid: resolved (fixed in 0.98.7+dfsg-1)
trixie: resolved (fixed in 0.98.7+dfsg-1)
debian
CVE-2018-0360P4MEDIUMCVSS 5.5fixed in clamav 0.100.1+dfsg-1 (bookworm)2018
CVE-2018-0360 [MEDIUM] CVE-2018-0360: clamav - ClamAV before 0.100.1 has an HWP integer overflow with a resultant infinite loop...
ClamAV before 0.100.1 has an HWP integer overflow with a resultant infinite loop via a crafted Hangul Word Processor file. This is in parsehwp3_paragraph() in libclamav/hwp.c.
Scope: local
bookworm: resolved (fixed in 0.100.1+dfsg-1)
bullseye: resolved (fixed in 0.100.1+dfsg-1)
forky: resolved (fixed in 0.100.1+dfsg-1)
sid: resolved (fixed in 0.100.1+dfsg-1)
trixie:
debian
CVE-2018-1000085P4MEDIUMCVSS 5.5fixed in clamav 0.99.3~beta1+dfsg-1 (bookworm)2018
CVE-2018-1000085 [MEDIUM] CVE-2018-1000085: clamav - ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerab...
ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerability in XAR parser, function xar_hash_check() that can result in Leaking of memory, may help in developing exploit chains.. This attack appear to be exploitable via The victim must scan a crafted XAR file. This vulnerability appears to have been fixed in after commit d96a6b8bcc7439
debian
CVE-2017-6420P4MEDIUMCVSS 5.5fixed in clamav 0.99.3~beta1+dfsg-1 (bookworm)2017
CVE-2017-6420 [MEDIUM] CVE-2017-6420: clamav - The wwunpack function in libclamav/wwunpack.c in ClamAV 0.99.2 allows remote att...
The wwunpack function in libclamav/wwunpack.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (use-after-free) via a crafted PE file with WWPack compression.
Scope: local
bookworm: resolved (fixed in 0.99.3~beta1+dfsg-1)
bullseye: resolved (fixed in 0.99.3~beta1+dfsg-1)
forky: resolved (fixed in 0.99.3~beta1+dfsg-1)
sid: resolved (fixed in 0.99.
debian
CVE-2007-1745P4HIGHCVSS 7.5fixed in clamav 0.90.2-1 (bookworm)2007
CVE-2007-1745 [HIGH] CVE-2007-1745: clamav - The chm_decompress_stream function in libclamav/chmunpack.c in Clam AntiVirus (C...
The chm_decompress_stream function in libclamav/chmunpack.c in Clam AntiVirus (ClamAV) before 0.90.2 leaks file descriptors, which has unknown impact and attack vectors involving a crafted CHM file, a different vulnerability than CVE-2007-0897. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved (fixed in 0.90.2-1)
bul
debian
CVE-2007-3123P4MEDIUMCVSS 5.0fixed in clamav 0.90.3-1 (bookworm)2007
CVE-2007-3123 [MEDIUM] CVE-2007-3123: clamav - unrar.c in libclamav in ClamAV before 0.90.3 and 0.91 before 0.91rc1 allows remo...
unrar.c in libclamav in ClamAV before 0.90.3 and 0.91 before 0.91rc1 allows remote attackers to cause a denial of service (core dump) via a crafted RAR file with a modified vm_codesize value, which triggers a heap-based buffer overflow.
Scope: local
bookworm: resolved (fixed in 0.90.3-1)
bullseye: resolved (fixed in 0.90.3-1)
forky: resolved (fixed in 0.90.3-1)
sid:
debian
CVE-2009-3736P4LOWCVSS 6.9fixed in clamav 0.95+dfsg-1 (bookworm)2009
CVE-2009-3736 [MEDIUM] CVE-2009-3736: bochs - ltdl.c in libltdl in GNU Libtool 1.5.x, and 2.2.6 before 2.2.6b, as used in Ham ...
ltdl.c in libltdl in GNU Libtool 1.5.x, and 2.2.6 before 2.2.6b, as used in Ham Radio Control Libraries, Q, and possibly other products, attempts to open a .la file in the current working directory, which allows local users to gain privileges via a Trojan horse file.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
debian
CVE-2022-20796P4MEDIUMCVSS 6.5fixed in clamav 0.103.6+dfsg-1 (bookworm)2022
CVE-2022-20796 [MEDIUM] CVE-2022-20796: clamav - On May 4, 2022, the following vulnerability in the ClamAV scanning library versi...
On May 4, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 and earlier was disclosed: A vulnerability in Clam AntiVirus (ClamAV) versions 0.103.4, 0.103.5, 0.104.1, and 0.104.2 could allow an authenticated, local attacker to cause a denial of service condition on an affected device. For a description of this
debian
CVE-2011-2721P4MEDIUMCVSS 5.0fixed in clamav 0.97.2+dfsg-1 (bookworm)2011
CVE-2011-2721 [MEDIUM] CVE-2011-2721: clamav - Off-by-one error in the cli_hm_scan function in matcher-hash.c in libclamav in C...
Off-by-one error in the cli_hm_scan function in matcher-hash.c in libclamav in ClamAV before 0.97.2 allows remote attackers to cause a denial of service (daemon crash) via an e-mail message that is not properly handled during certain hash calculations.
Scope: local
bookworm: resolved (fixed in 0.97.2+dfsg-1)
bullseye: resolved (fixed in 0.97.2+dfsg-1)
forky: resolved
debian