Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
ClamAV HTML Parser Denial of Service Vulnerability
Vulnerability Description
A vulnerability in the HTML parser of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to an issue in the C to Rust foreign function interface. An attacker could exploit this vulnerability by submitting a crafted file containing HTML content to be scanned by ClamAV on an affected device. An exploit could allow the attacker to cause the ClamAV scanning process to terminate, resulting in a DoS condition on the affected software.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
从输入到API的未定义行为
Vulnerability Title
ClamAV 安全漏洞
Vulnerability Description
ClamAV(Clam AntiVirus)是ClamAV团队的一套免费且开源的杀毒软件。该软件用于检测木马、病毒、恶意软件和其他恶意威胁。 ClamAV 1.3.1之前、1.2.3之前、1.0.6之前存在安全漏洞,该漏洞源于 C 到 Rust 外部函数接口中存在安全问题,允许未经身份验证的远程攻击者在受影响的设备上造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A