Unrated severityNVD Advisory· Published Nov 13, 2008· Updated Jun 16, 2026
CVE-2008-5050
CVE-2008-5050
Description
Off-by-one error in the get_unicode_name function (libclamav/vba_extract.c) in Clam Anti-Virus (ClamAV) before 0.94.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted VBA project file, which triggers a heap-based buffer overflow.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
100cpe:2.3:a:clam_anti-virus:clamav:*:*:*:*:*:*:*:*+ 98 more
- cpe:2.3:a:clam_anti-virus:clamav:*:*:*:*:*:*:*:*range: <=0.94
- cpe:2.3:a:clam_anti-virus:clamav:0.01:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.02:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.03:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.04:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.05:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.06:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.10:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.11:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.12:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.13:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.14:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.14:pre:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.15:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.20:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.21:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.22:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.23:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.24:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.51:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.52:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.53:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.54:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.60:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.60p:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.65:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.67:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.68:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.68.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.70:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.71:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.72:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.73:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.74:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.75:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.75.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.80:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.80:rc:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.80_rc1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.80:rc2:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.80_rc2:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.80:rc3:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.80_rc3:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.80:rc4:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.80_rc4:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.81:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.81:rc1:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.81_rc1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.82:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.83:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.84:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.84:rc1:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.84_rc1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.84:rc2:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.84_rc2:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.85:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.85.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.86:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.86.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.86.2:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.86:rc1:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.86_rc1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.87:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.87.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88.2:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88.3:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88.4:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88.5:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88.6:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88.7:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88.7:p0:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.88.7:p1:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90.1:p0:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90.2:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90.2:p0:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90.3:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90.3:p0:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90.3:p1:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90rc1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90_rc1.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90_rc2:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.90_rc3:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.91:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.91.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.91.2:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.91.2:p0:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.91rc1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.91rc2:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.92:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.92.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.92:p0:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.93:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.93.1:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.93.2:*:*:*:*:*:*:*
- cpe:2.3:a:clam_anti-virus:clamav:0.93.3:*:*:*:*:*:*:*
- Range: <0.94.1
Patches
Vulnerability mechanics
References
25- www.securityfocus.com/bid/32207nvdPatch
- lists.grok.org.uk/pipermail/full-disclosure/2008-November/065530.htmlnvdExploit
- secunia.com/advisories/32663nvdVendor Advisory
- lists.apple.com/archives/security-announce/2009/Feb/msg00000.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.htmlnvd
- secunia.com/advisories/32699nvd
- secunia.com/advisories/32765nvd
- secunia.com/advisories/32872nvd
- secunia.com/advisories/33016nvd
- secunia.com/advisories/33317nvd
- secunia.com/advisories/33937nvd
- security.gentoo.org/glsa/glsa-200812-21.xmlnvd
- securityreason.com/securityalert/4579nvd
- sourceforge.net/project/shownotes.phpnvd
- support.apple.com/kb/HT3438nvd
- www.debian.org/security/2008/dsa-1680nvd
- www.mandriva.com/security/advisoriesnvd
- www.securityfocus.com/archive/1/498169/100/0/threadednvd
- www.securitytracker.com/idnvd
- www.ubuntu.com/usn/usn-672-1nvd
- www.vupen.com/english/advisories/2008/3085nvd
- www.vupen.com/english/advisories/2009/0422nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/46462nvd
- www.redhat.com/archives/fedora-package-announce/2008-November/msg00332.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2008-November/msg00348.htmlnvd
News mentions
0No linked articles in our index yet.