Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the pefromupx function in libclamav/upx.c in Clam AntiVirus (ClamAV) 0.81 through 0.88.3 allows remote attackers to execute arbitrary code via a crafted UPX packed file containing sections with large rsize values.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Clam AntiVirus处理UPX压缩PE文件构建堆溢出漏洞
Vulnerability Description
ClamAntiVirus是一款UNIX环境下开源的防病毒软件。 Clam AntiVirus在处理畸形UPX压缩的文件时存在堆溢出漏洞,远程攻击者可能利用此漏洞完全控制查毒机器。 Clam AntiVirus的pefromupx()函数在处理UPX格式压缩的文件构建PE文件时存在堆溢出问题,远程攻击者可能通过恶意的UPX文件在查毒机器上执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A