Vulnerabilities > Clamav > Clamav > 0.9.rc1

DATE CVE VULNERABILITY TITLE RISK
2009-04-23 CVE-2009-1372 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Clamav
Stack-based buffer overflow in the cli_url_canon function in libclamav/phishcheck.c in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted URL.
network
low complexity
clamav CWE-119
critical
10.0
2009-04-23 CVE-2009-1371 Improper Input Validation vulnerability in Clamav
The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding.
network
low complexity
clamav CWE-20
5.0