CVE-2017-6418

libclamav/message.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted e-mail message.
Configurations

Configuration 1 (hide)

cpe:2.3:a:clamav:clamav:0.99.2:*:*:*:*:*:*:*

History

21 Nov 2024, 03:29

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/100154 - () http://www.securityfocus.com/bid/100154 -
References () https://bugzilla.clamav.net/show_bug.cgi?id=11797 - Permissions Required () https://bugzilla.clamav.net/show_bug.cgi?id=11797 - Permissions Required
References () https://github.com/varsleak/varsleak-vul/blob/master/clamav-vul/heap-overflow/clamav_email_crash.md - Third Party Advisory () https://github.com/varsleak/varsleak-vul/blob/master/clamav-vul/heap-overflow/clamav_email_crash.md - Third Party Advisory
References () https://github.com/vrtadmin/clamav-devel/commit/586a5180287262070637c8943f2f7efd652e4a2c - Issue Tracking, Patch, Third Party Advisory () https://github.com/vrtadmin/clamav-devel/commit/586a5180287262070637c8943f2f7efd652e4a2c - Issue Tracking, Patch, Third Party Advisory
References () https://security.gentoo.org/glsa/201804-16 - () https://security.gentoo.org/glsa/201804-16 -

Information

Published : 2017-08-07 03:29

Updated : 2024-11-21 03:29


NVD link : CVE-2017-6418

Mitre link : CVE-2017-6418

CVE.ORG link : CVE-2017-6418


JSON object : View

Products Affected

clamav

  • clamav
CWE
CWE-125

Out-of-bounds Read