← All CVEs

CVE-2006-4182

high · 7.5

Integer overflow in ClamAV 0.88.1 and 0.88.4, and other versions before 0.88.5, allows remote attackers to cause a denial of service (scanning service crash) and execute arbitrary code via a crafted Portable Executable (PE) file that leads to a heap-based buffer overflow when less memory is allocated than expected.

7.5
CVSS
21.4%
EPSS (exploit prob.)
97th
EPSS percentile
2006-10-16
Published

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
clam_anti-virusclamav<= 0.88.4
clam_anti-virusclamav.
clam_anti-virusclamav0.15
clam_anti-virusclamav0.20
clam_anti-virusclamav0.21
clam_anti-virusclamav0.22
clam_anti-virusclamav0.23
clam_anti-virusclamav0.24
clam_anti-virusclamav0.51
clam_anti-virusclamav0.52
clam_anti-virusclamav0.53
clam_anti-virusclamav0.54
clam_anti-virusclamav0.60
clam_anti-virusclamav0.60p
clam_anti-virusclamav0.65
clam_anti-virusclamav0.67
clam_anti-virusclamav0.68
clam_anti-virusclamav0.68.1
clam_anti-virusclamav0.70
clam_anti-virusclamav0.71
clam_anti-virusclamav0.72
clam_anti-virusclamav0.73
clam_anti-virusclamav0.74
clam_anti-virusclamav0.75
clam_anti-virusclamav0.75.1
clam_anti-virusclamav0.80
clam_anti-virusclamav0.80_rc1
clam_anti-virusclamav0.80_rc2
clam_anti-virusclamav0.80_rc3
clam_anti-virusclamav0.80_rc4
clam_anti-virusclamav0.81
clam_anti-virusclamav0.81_rc1
clam_anti-virusclamav0.82
clam_anti-virusclamav0.83
clam_anti-virusclamav0.84
clam_anti-virusclamav0.84_rc1
clam_anti-virusclamav0.84_rc2
clam_anti-virusclamav0.85
clam_anti-virusclamav0.85.1
clam_anti-virusclamav0.86

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-4182