Vulnerabilities > Clam Anti Virus > Clamav > 0.68.1

DATE CVE VULNERABILITY TITLE RISK
2006-04-06 CVE-2006-1614 Multiple vulnerability in Clam AntiVirus ClamAV
Integer overflow in the cli_scanpe function in the PE header parser (libclamav/pe.c) in Clam AntiVirus (ClamAV) before 0.88.1, when ArchiveMaxFileSize is disabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code.
network
high complexity
clam-anti-virus
5.1
2006-01-10 CVE-2006-0162 Buffer Overflow vulnerability in Clam Anti-Virus ClamAV UPX Compressed File Heap
Heap-based buffer overflow in libclamav/upx.c in Clam Antivirus (ClamAV) before 0.88 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted UPX files.
network
low complexity
clam-anti-virus
7.5
2005-11-16 CVE-2005-3587 Remote Security vulnerability in ClamAV
Improper boundary checks in petite.c in Clam AntiVirus (ClamAV) before 0.87.1 allows attackers to perform unknown attacks via unknown vectors.
network
low complexity
clam-anti-virus
critical
10.0
2005-11-05 CVE-2005-3500 Denial Of Service vulnerability in Clam Anti-Virus ClamAV TNEF File Handling
The tnef_attachment function in tnef.c for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via a crafted value in a CAB file that causes ClamAV to repeatedly scan the same block.
network
low complexity
clam-anti-virus
5.0
2005-05-02 CVE-2005-0218 Unspecified vulnerability in Clam Anti-Virus Clamav
ClamAV 0.80 and earlier allows remote attackers to bypass virus scanning via a base64 encoded image in a data: (RFC 2397) URL.
network
low complexity
clam-anti-virus
5.0
2005-05-02 CVE-2005-0133 Unspecified vulnerability in Clam Anti-Virus Clamav
ClamAV 0.80 and earlier allows remote attackers to cause a denial of service (clamd daemon crash) via a ZIP file with malformed headers.
network
low complexity
clam-anti-virus
5.0
2004-03-30 CVE-2004-1876 Unspecified vulnerability in Clam Anti-Virus Clamav
The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 0.70 allows local users to execute arbitrary commands via shell metacharacters in a file name.
local
low complexity
clam-anti-virus
4.6