Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2020

Опубликовано: 13 мая 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an out-of-bounds read.

РелизСтатусПримечание
devel

released

0.97.8+dfsg-1ubuntu1.13.04.1
hardy

released

0.97.8+dfsg-1ubuntu1.08.04.1
lucid

released

0.97.8+dfsg-1ubuntu1.10.04.1
oneiric

released

0.97.8+dfsg-1ubuntu1.11.10.1
precise

released

0.97.8+dfsg-1ubuntu1.12.04.1
quantal

released

0.97.8+dfsg-1ubuntu1.12.10.1
raring

released

0.97.8+dfsg-1ubuntu1.13.04.1
upstream

released

0.97.8

Показывать по

EPSS

Процентиль: 92%
0.07627
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
больше 12 лет назад

Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an out-of-bounds read.

debian
больше 12 лет назад

Integer underflow in the cli_scanpe function in pe.c in ClamAV before ...

github
больше 3 лет назад

Integer underflow in the cli_scanpe function in pe.c in ClamAV before 0.97.8 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an out-of-bounds read.

suse-cvrf
больше 11 лет назад

Recommended update for clamav

suse-cvrf
больше 11 лет назад

Recommended update for clamav

EPSS

Процентиль: 92%
0.07627
Низкий

5 Medium

CVSS2