AVG-601

Package clamav
Status Fixed
Severity Critical
Type multiple issues
Affected 0.99.2-1
Fixed 0.99.3-1
Current 0.101.1-1 [extra]
Ticket FS#57233
Created Wed Jan 31 00:08:56 2018
Issue Severity Remote Type Description
CVE-2017-6420 Medium Yes Denial of service
The wwunpack function in libclamav/wwunpack.c in ClamAV before 0.99.3 allows remote attackers to cause a denial of service (use-after-free) via a crafted PE...
CVE-2017-6418 Medium Yes Denial of service
libclamav/message.c in ClamAV before 0.99.3 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted e-mail message.
CVE-2017-12380 Medium Yes Denial of service
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of...
CVE-2017-12379 Critical Yes Arbitrary code execution
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of...
CVE-2017-12378 Medium Yes Denial of service
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of...
CVE-2017-12377 Critical Yes Arbitrary code execution
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of...
CVE-2017-12376 Critical Yes Arbitrary code execution
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of...
CVE-2017-12375 Medium Yes Denial of service
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of...
CVE-2017-12374 Medium Yes Denial of service
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of...
Date Advisory Package Description
09 Feb 2018 ASA-201802-1 clamav multiple issues
References
http://blog.clamav.net/2018/01/clamav-0993-has-been-released.html