Sploitus

CVE-2006-4182

2 known exploits for CVE-2006-4182

Integer overflow in ClamAV 0.88.1 and 0.88.4, and other versions before 0.88.5, allows remote attackers to cause a denial of service (scanning service crash) and execute arbitrary code via a crafted Portable Executable (PE) file that leads to a heap-based buffer overflow when less memory is allocated than expected.

Affected products
Clamav
Clam Anti-virus Clamav
≤ 0.88.4, ., 0.15, 0.20, 0.21, 0.22, 0.23, 0.24, 0.51, 0.52, 0.53, 0.54, 0.60, 0.60p, 0.65, 0.67, 0.68, 0.68.1, 0.70, 0.71, 0.72, 0.73, 0.74, 0.75, 0.75.1, 0.80, 0.80_rc1, 0.80_rc2, 0.80_rc3, 0.80_rc4, 0.81, 0.81_rc1, 0.82, 0.83, 0.84, 0.84_rc1, 0.84_rc2, 0.85, 0.85.1, 0.86
Fix
Available
CVSS 2.0
7.5 HIGH
EPSS
20.2% (97th percentile)
NVD status
Modified
Published
2006-10-16
CVE-2006-4182 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2006-4182

Proof-of-concept code and exploit modules indexed by Sploitus