Lucene search

K
cveRedhatCVE-2011-3627
HistoryNov 17, 2011 - 7:55 p.m.

CVE-2011-3627

2011-11-1719:55:01
CWE-189
redhat
web.nvd.nist.gov
35
cve
2011
3627
denial of service
clamav
bytecode engine

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.2

Confidence

Low

EPSS

0.024

Percentile

89.9%

The bytecode engine in ClamAV before 0.97.3 allows remote attackers to cause a denial of service (crash) via vectors related to “recursion level” and (1) libclamav/bytecode.c and (2) libclamav/bytecode_api.c.

Affected configurations

Nvd
Node
clamavclamavRange0.97.2
OR
clamavclamavMatch0.9rc1
OR
clamavclamavMatch0.90
OR
clamavclamavMatch0.90rc1
OR
clamavclamavMatch0.90rc1.1
OR
clamavclamavMatch0.90rc2
OR
clamavclamavMatch0.90rc3
OR
clamavclamavMatch0.90.1
OR
clamavclamavMatch0.90.2
OR
clamavclamavMatch0.90.3
OR
clamavclamavMatch0.91
OR
clamavclamavMatch0.91rc1
OR
clamavclamavMatch0.91rc2
OR
clamavclamavMatch0.91.1
OR
clamavclamavMatch0.91.2
OR
clamavclamavMatch0.92
OR
clamavclamavMatch0.92.1
OR
clamavclamavMatch0.93
OR
clamavclamavMatch0.93.1
OR
clamavclamavMatch0.93.2
OR
clamavclamavMatch0.93.3
OR
clamavclamavMatch0.94
OR
clamavclamavMatch0.94.1
OR
clamavclamavMatch0.94.2
OR
clamavclamavMatch0.95
OR
clamavclamavMatch0.95rc1
OR
clamavclamavMatch0.95rc2
OR
clamavclamavMatch0.95src1
OR
clamavclamavMatch0.95src2
OR
clamavclamavMatch0.95.1
OR
clamavclamavMatch0.95.2
OR
clamavclamavMatch0.95.3
OR
clamavclamavMatch0.96
OR
clamavclamavMatch0.96rc1
OR
clamavclamavMatch0.96rc2
OR
clamavclamavMatch0.96.1
OR
clamavclamavMatch0.96.2
OR
clamavclamavMatch0.96.3
OR
clamavclamavMatch0.96.4
OR
clamavclamavMatch0.96.5
OR
clamavclamavMatch0.97
OR
clamavclamavMatch0.97rc
OR
clamavclamavMatch0.97.1
VendorProductVersionCPE
clamavclamav*cpe:2.3:a:clamav:clamav:*:*:*:*:*:*:*:*
clamavclamav0.9cpe:2.3:a:clamav:clamav:0.9:rc1:*:*:*:*:*:*
clamavclamav0.90cpe:2.3:a:clamav:clamav:0.90:*:*:*:*:*:*:*
clamavclamav0.90cpe:2.3:a:clamav:clamav:0.90:rc1:*:*:*:*:*:*
clamavclamav0.90cpe:2.3:a:clamav:clamav:0.90:rc1.1:*:*:*:*:*:*
clamavclamav0.90cpe:2.3:a:clamav:clamav:0.90:rc2:*:*:*:*:*:*
clamavclamav0.90cpe:2.3:a:clamav:clamav:0.90:rc3:*:*:*:*:*:*
clamavclamav0.90.1cpe:2.3:a:clamav:clamav:0.90.1:*:*:*:*:*:*:*
clamavclamav0.90.2cpe:2.3:a:clamav:clamav:0.90.2:*:*:*:*:*:*:*
clamavclamav0.90.3cpe:2.3:a:clamav:clamav:0.90.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 431

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.2

Confidence

Low

EPSS

0.024

Percentile

89.9%