Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Off-by-one error in the parseicon function in libclamav/pe_icons.c in ClamAV 0.96 allows remote attackers to cause a denial of service (crash) via a crafted PE icon that triggers an out-of-bounds read, related to improper rounding during scaling.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ClamAV 数字错误漏洞
Vulnerability Description
ClamAV(Clam AntiVirus)是ClamAV团队的一套免费且开源的杀毒软件。该软件用于检测木马、病毒、恶意软件和其他恶意威胁。 ClamAV存在数字错误漏洞,远程攻击者可以通过伪造能够触发带外读取的PE图标,导致函数parseicon发生错误和导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A