Lucene search

K
osvGoogleOSV:CVE-2020-3327
HistoryMay 13, 2020 - 3:15 a.m.

CVE-2020-3327

2020-05-1303:15:11
Google
osv.dev
3

7.2 High

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

78.6%

A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a heap buffer overflow read. An attacker could exploit this vulnerability by sending a crafted ARJ file to an affected device. An exploit could allow the attacker to cause the ClamAV scanning process crash, resulting in a denial of service condition.

References