CVE-2008-3215
libclamav/petite.c in ClamAV before 0.93.3 allows remote attackers to cause a denial of service via a malformed Petite file that triggers an out-of-bounds memory access. NOTE: this issue exists because of an incomplete fix for CVE-2008-2713.
- Affected products
- Clamav
- Clam Anti-virus Clamav
- = 0.88.2, 0.88.4, 0.88.5, 0.88.6, 0.88.7, 0.90, 0.90.1, 0.90.2, 0.90.3, 0.91.2, 0.92, 0.92.1, 0.93
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 4.7% (91th percentile)
- Weakness
- CWE-399
- NVD status
- Modified
- Published
- 2008-07-18
CVE-2008-3215 at NVD
No indexed exploits for CVE-2008-3215 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2008-3215 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.