VYPR
Unrated severityNVD Advisory· Published May 13, 2013· Updated Apr 29, 2026

CVE-2013-2021

CVE-2013-2021

Description

pdf.c in ClamAV 0.97.1 through 0.97.7 allows remote attackers to cause a denial of service (out-of-bounds-read) via a crafted length value in an encrypted PDF file.

Affected products

14
  • ClamAV/Clamav7 versions
    cpe:2.3:a:clamav:clamav:0.97.1:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:clamav:clamav:0.97.1:*:*:*:*:*:*:*
    • cpe:2.3:a:clamav:clamav:0.97.2:*:*:*:*:*:*:*
    • cpe:2.3:a:clamav:clamav:0.97.3:*:*:*:*:*:*:*
    • cpe:2.3:a:clamav:clamav:0.97.4:*:*:*:*:*:*:*
    • cpe:2.3:a:clamav:clamav:0.97.5:*:*:*:*:*:*:*
    • cpe:2.3:a:clamav:clamav:0.97.6:*:*:*:*:*:*:*
    • cpe:2.3:a:clamav:clamav:0.97.7:*:*:*:*:*:*:*
  • cpe:2.3:o:canonical:ubuntu_linux:10.04:-:lts:*:*:*:*:*+ 4 more
    • cpe:2.3:o:canonical:ubuntu_linux:10.04:-:lts:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:11.10:*:*:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:12.04:-:lts:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:13.04:*:*:*:*:*:*:*
  • cpe:2.3:o:suse:linux_enterprise_server:11.0:sp1:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:suse:linux_enterprise_server:11.0:sp1:*:*:*:*:*:*
    • cpe:2.3:o:suse:linux_enterprise_server:11.0:sp2:*:*:*:*:*:*

Patches

1

Vulnerability mechanics

Generated on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.

References

21

News mentions

0

No linked articles in our index yet.