CVE-2006-1989
Buffer overflow in the get_database function in the HTTP client in Freshclam in ClamAV 0.80 to 0.88.1 might allow remote web servers to execute arbitrary code via long HTTP headers.
- Affected products
- Clamav
- Clam Anti-virus Clamav
- = 0.88, 0.88.1
- Fix
- Available
- CVSS 2.0
- 5.1 MEDIUM
- EPSS
- 5.8% (92th percentile)
- NVD status
- Modified
- Published
- 2006-05-01
CVE-2006-1989 at NVD
No indexed exploits for CVE-2006-1989 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2006-1989 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.