CVE-2006-4182
ClamAV < 0.88.5 - Remote Code Execution via Crafted PE File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-4182. PoCs published by Damian Put.
AI-analyzed exploit summary This is a proof-of-concept exploit for a remote heap overflow vulnerability in Clam AntiVirus versions up to 0.88.4. The exploit targets the 'rebuildpe' functionality, potentially allowing remote code execution.
Description
Integer overflow in ClamAV 0.88.1 and 0.88.4, and other versions before 0.88.5, allows remote attackers to cause a denial of service (scanning service crash) and execute arbitrary code via a crafted Portable Executable (PE) file that leads to a heap-based buffer overflow when less memory is allocated than expected.
Exploits (1)
This is a proof-of-concept exploit for a remote heap overflow vulnerability in Clam AntiVirus versions up to 0.88.4. The exploit targets the 'rebuildpe' functionality, potentially allowing remote code execution.