Vulnerabilities > Clamav > Clamav > 0.97.7

DATE CVE VULNERABILITY TITLE RISK
2018-01-26 CVE-2017-12376 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an affected device.
network
debian clamav CWE-119
critical
9.3
2018-01-26 CVE-2017-12375 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
debian clamav CWE-119
7.8
2018-01-26 CVE-2017-12374 Use After Free vulnerability in multiple products
The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
debian clamav CWE-416
7.8
2016-10-03 CVE-2016-1372 Improper Access Control vulnerability in multiple products
ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted 7z file.
4.3
2016-10-03 CVE-2016-1371 Improper Access Control vulnerability in multiple products
ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted mew packer executable.
4.3
2015-05-12 CVE-2015-2668 Resource Management Errors vulnerability in multiple products
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted xz archive file.
network
low complexity
clamav canonical CWE-399
5.0
2015-05-12 CVE-2015-2222 Resource Management Errors vulnerability in multiple products
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted petite packed file.
network
low complexity
canonical clamav CWE-399
5.0
2015-05-12 CVE-2015-2221 Resource Management Errors vulnerability in multiple products
ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted y0da cryptor file.
network
low complexity
clamav canonical CWE-399
5.0
2015-05-12 CVE-2015-2170 Resource Management Errors vulnerability in multiple products
The upx decoder in ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted file.
network
low complexity
canonical clamav CWE-399
5.0
2015-02-03 CVE-2015-1463 Code vulnerability in multiple products
ClamAV before 0.98.6 allows remote attackers to cause a denial of service (crash) via a crafted petite packer file, related to an "incorrect compiler optimization."
network
low complexity
clamav fedoraproject CWE-17
5.0