Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35540
HistoryMay 15, 2022 - 4:52 p.m.

Denial Of Service (DoS)

2022-05-1516:52:34
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.001 Low

EPSS

Percentile

31.6%

clamav is vulnerable to denial of service. An attacker can crash the application through the multi-byte heap buffer overflow write where an attacker could exploit this vulnerability by placing a crafted CDB ClamAV signature database file in the ClamAV database directory. An exploit could allow the attacker to run code as the clamav user.