Multiple format string vulnerabilities in the logging code in Clam AntiVirus (ClamAV) before 0.88.1 might allow remote attackers to execute arbitrary code. NOTE: as of 20060410, it is unclear whether this is a vulnerability, as there is some evidence that the arguments are actually being sanitized properly.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-04-06 15:04
Updated : 2017-07-19 18:30
NVD link : CVE-2006-1615
Mitre link : CVE-2006-1615
JSON object : View
CWE
CWE-134
Use of Externally-Controlled Format String
Products Affected
clamav
- clamav