Sploitus

CVE-2006-2427

No indexed exploits for CVE-2006-2427 yet

freshclam in (1) Clam Antivirus (ClamAV) 0.88 and (2) ClamXav 1.0.3h and earlier does not drop privileges before processing the config-file command line option, which allows local users to read portions of arbitrary files when an error message displays the first line of the target file.

Affected products
Clamav
Clam Anti-virus Clamav
= 0.88
Clam Anti-virus Clamxav
= 1.0.3h
Fix
Available
CVSS 2.0
7.2 HIGH
EPSS
0.5% (39th percentile)
NVD status
Modified
Published
2006-05-17
CVE-2006-2427 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2006-2427 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2006-2427 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.