varsleak

3 exploits Active since Aug 2017
CVE-2017-6418 WRITEUP MEDIUM WRITEUP
Clamav - Out-of-Bounds Read
libclamav/message.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted e-mail message.
CVSS 5.5
CVE-2017-6419 WRITEUP HIGH WRITEUP
Libmspack - Memory Corruption
mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted CHM file.
CVSS 7.8
CVE-2017-6420 WRITEUP MEDIUM WRITEUP
Clamav - Use After Free
The wwunpack function in libclamav/wwunpack.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (use-after-free) via a crafted PE file with WWPack compression.
CVSS 5.5