Lucene search

K
nvd[email protected]NVD:CVE-2008-1387
HistoryApr 16, 2008 - 4:05 p.m.

CVE-2008-1387

2008-04-1616:05:00
web.nvd.nist.gov
1

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.4

Confidence

High

EPSS

0.088

Percentile

94.6%

ClamAV before 0.93 allows remote attackers to cause a denial of service (CPU consumption) via a crafted ARJ archive, as demonstrated by the PROTOS GENOME test suite for Archive Formats.

Affected configurations

NVD
Node
clam_anti-virusclamavMatch0.90
OR
clam_anti-virusclamavMatch0.90.1
OR
clam_anti-virusclamavMatch0.90_rc1.1
OR
clam_anti-virusclamavMatch0.90_rc2
OR
clam_anti-virusclamavMatch0.90_rc3
OR
clam_anti-virusclamavMatch0.90rc1
OR
clam_anti-virusclamavMatch0.91
OR
clam_anti-virusclamavMatch0.92

References

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

6.4

Confidence

High

EPSS

0.088

Percentile

94.6%