Integer overflow in the cli_scanpe function in the PE header parser (libclamav/pe.c) in Clam AntiVirus (ClamAV) before 0.88.1, when ArchiveMaxFileSize is disabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Clamav | Clam_anti-virus | 0.84 | 0.84 |
Clamav | Clam_anti-virus | 0.80 | 0.80 |
Clamav | Clam_anti-virus | 0.84_rc1 | 0.84_rc1 |
Clamav | Clam_anti-virus | 0.80_rc3 | 0.80_rc3 |
Clamav | Clam_anti-virus | 0.80_rc4 | 0.80_rc4 |
Clamav | Clam_anti-virus | 0.65 | 0.65 |
Clamav | Clam_anti-virus | 0.68 | 0.68 |
Clamav | Clam_anti-virus | 0.86.1 | 0.86.1 |
Clamav | Clam_anti-virus | 0.82 | 0.82 |
Clamav | Clam_anti-virus | 0.85.1 | 0.85.1 |
Clamav | Clam_anti-virus | 0.87 | 0.87 |
Clamav | Clam_anti-virus | 0.85 | 0.85 |
Clamav | Clam_anti-virus | 0.80_rc1 | 0.80_rc1 |
Clamav | Clam_anti-virus | 0.75.1 | 0.75.1 |
Clamav | Clam_anti-virus | 0.86.2 | 0.86.2 |
Clamav | Clam_anti-virus | 0.67 | 0.67 |
Clamav | Clam_anti-virus | 0.81 | 0.81 |
Clamav | Clam_anti-virus | 0.54 | 0.54 |
Clamav | Clam_anti-virus | 0.53 | 0.53 |
Clamav | Clam_anti-virus | 0.70 | 0.70 |
Clamav | Clam_anti-virus | 0.80_rc2 | 0.80_rc2 |
Clamav | Clam_anti-virus | 0.60 | 0.60 |
Clamav | Clam_anti-virus | 0.86 | 0.86 |
Clamav | Clam_anti-virus | 0.83 | 0.83 |
Clamav | Clam_anti-virus | 0.68.1 | 0.68.1 |
Clamav | Clam_anti-virus | 0.88 | 0.88 |
Clamav | Clam_anti-virus | 0.87.1 | 0.87.1 |
Clamav | Clam_anti-virus | 0.84_rc2 | 0.84_rc2 |
Clamav | Clam_anti-virus | 0.51 | 0.51 |
Clamav | Clam_anti-virus | 0.52 | 0.52 |