CVE-2014-9050
Heap-based buffer overflow in the cli_scanpe function in libclamav/pe.c in ClamAV before 0.98.5 allows remote attackers to cause a denial of service (crash) via a crafted y0da Crypter PE file.
- Clamav
- ≤ 0.94.3, 0.01, 0.02, 0.3, 0.03, 0.05, 0.8, 0.9, 0.10, 0.12, 0.13, 0.14, 0.15, 0.20, 0.21, 0.22, 0.23, 0.24, 0.51, 0.52, 0.53, 0.54, 0.60, 0.60p, 0.65, 0.66, 0.67, 0.67-1, 0.68, 0.68.1, 0.70, 0.71, 0.72, 0.73, 0.74, 0.75, 0.75.1, 0.80, 0.80_rc, 0.81
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 4.9% (91th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2014-12-01
CVE-2014-9050 at NVD
No indexed exploits for CVE-2014-9050 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2014-9050 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.