Vulnerabilities > Clam Anti Virus > Clamav > 0.84.rc1
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2006-04-06 | CVE-2006-1614 | Multiple vulnerability in Clam AntiVirus ClamAV Integer overflow in the cli_scanpe function in the PE header parser (libclamav/pe.c) in Clam AntiVirus (ClamAV) before 0.88.1, when ArchiveMaxFileSize is disabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code. | 5.1 |
2006-01-10 | CVE-2006-0162 | Buffer Overflow vulnerability in Clam Anti-Virus ClamAV UPX Compressed File Heap Heap-based buffer overflow in libclamav/upx.c in Clam Antivirus (ClamAV) before 0.88 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted UPX files. | 7.5 |
2005-07-05 | CVE-2005-1923 | Unspecified vulnerability in Clam Anti-Virus Clamav The ENSURE_BITS macro in mszipd.c for Clam AntiVirus (ClamAV) 0.83, and other versions vefore 0.86, allows remote attackers to cause a denial of service (CPU consumption by infinite loop) via a cabinet (CAB) file with the cffile_FolderOffset field set to 0xff, which causes a zero-length read. | 2.6 |
2005-07-05 | CVE-2005-1922 | Unspecified vulnerability in Clam Anti-Virus Clamav The MS-Expand file handling in Clam AntiVirus (ClamAV) before 0.86 allows remote attackers to cause a denial of service (file descriptor and memory consumption) via a crafted file that causes repeated errors in the cli_msexpand function. | 5.0 |
2005-05-28 | CVE-2005-1800 | Cross-Site Scripting vulnerability in JAWS Glossary Cross-site scripting (XSS) vulnerability in Jaws Glossary gadget 0.4 to 0.5.1 allows remote attackers to inject arbitrary web script or HTML via the term parameter in a view or ViewTerm action to index.php. network clam-anti-virus | 4.3 |