CVE-2008-1387
ClamAV before 0.93 allows remote attackers to cause a denial of service (CPU consumption) via a crafted ARJ archive, as demonstrated by the PROTOS GENOME test suite for Archive Formats.
- Affected products
- Clamav
- Clam Anti-virus Clamav
- = 0.90, 0.90.1, 0.90_rc1.1, 0.90_rc2, 0.90_rc3, 0.90rc1, 0.91, 0.92
- Fix
- Available
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 4.4% (90th percentile)
- NVD status
- Modified
- Published
- 2008-04-16
CVE-2008-1387 at NVD
2 known exploits for CVE-2008-1387
Proof-of-concept code and exploit modules indexed by Sploitus