CVE-2007-6335
ClamAV < 0.92 - Remote Code Execution via MEW Packed PE File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-6335. PoCs published by Thomas Pollet.
AI-analyzed exploit summary This exploit targets a heap overflow vulnerability in ClamAV 0.91.2 (CVE-2007-6335) by crafting a malicious PE file. It leverages a controlled heap overflow to overwrite critical structures and execute arbitrary shellcode, resulting in remote code execution.
Description
Integer overflow in libclamav in ClamAV before 0.92 allows remote attackers to execute arbitrary code via a crafted MEW packed PE file, which triggers a heap-based buffer overflow.
Exploits (1)
This exploit targets a heap overflow vulnerability in ClamAV 0.91.2 (CVE-2007-6335) by crafting a malicious PE file. It leverages a controlled heap overflow to overwrite critical structures and execute arbitrary shellcode, resulting in remote code execution.