Vulnerabilities > Clamav > Clamav > 0.94.2

DATE CVE VULNERABILITY TITLE RISK
2009-04-23 CVE-2009-1371 Improper Input Validation vulnerability in Clamav
The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding.
network
low complexity
clamav CWE-20
5.0
2009-04-08 CVE-2009-1270 Infinite Loop vulnerability in multiple products
libclamav/untar.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (infinite loop) via a crafted TAR file that causes (1) clamd and (2) clamscan to hang.
network
low complexity
clamav debian canonical CWE-835
7.8
2009-04-08 CVE-2008-6680 Numeric Errors vulnerability in Clamav
libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash) via a crafted EXE file that triggers a divide-by-zero error.
network
low complexity
clamav CWE-189
5.0
2009-04-03 CVE-2009-1241 Unspecified vulnerability in Clamav
Unspecified vulnerability in ClamAV before 0.95 allows remote attackers to bypass detection of malware via a modified RAR archive.
network
low complexity
clamav
7.5