VYPR

Clam AntiVirus

by Clam AntiVirus

CVEs (3)

  • CVE-2004-0270Nov 23, 2004
    risk 0.04cvss epss 0.11

    libclamav in Clam AntiVirus 0.65 allows remote attackers to cause a denial of service (crash) via a uuencoded e-mail message with an invalid line length (e.g., a lowercase character), which causes an assert error in clamd that terminates the calling program.

  • CVE-2004-1876Mar 30, 2004
    risk 0.00cvss epss 0.00

    The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 0.70 allows local users to execute arbitrary commands via shell metacharacters in a file name.

  • CVE-2003-0946Dec 15, 2003
    risk 0.00cvss epss 0.02

    Format string vulnerability in clamav-milter for Clam AntiVirus 0.60 through 0.60p, and other versions before 0.65, allows remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in the email address argument of a "MAIL…