HIGH
Multiple format string vulnerabilities in the logging code in Clam AntiVirus (ClamAV) before 0.88.1 might allow remote attackers to execute arbitrary code
Published Apr 6, 2006
10.0
HIGHCVSS 2.0
EPSS 11.61%
Description
Multiple format string vulnerabilities in the logging code in Clam AntiVirus (ClamAV) before 0.88.1 might allow remote attackers to execute arbitrary code. NOTE: as of 20060410, it is unclear whether this is a vulnerability, as there is some evidence that the arguments are actually being sanitized properly.
Affected products
No data.
OR
- ≤ 0.88
- 0.01
- 0.02
- 0.3
- 0.03
- 0.05
- 0.8
- 0.10
- 0.12
- 0.13
- 0.14
- 0.14
- 0.15
- 0.20
- 0.21
- 0.22
- 0.23
- 0.24
- 0.51
- 0.52
- 0.53
- 0.54
- 0.60
- 0.60p
- 0.65
- 0.66
- 0.67
- 0.67-1
- 0.68
- 0.68.1
- 0.70
- 0.70
- 0.71
- 0.72
- 0.73
- 0.74
- 0.75
- 0.75.1
- 0.80
- 0.80
- 0.80
- 0.80
- 0.80
- 0.80
- 0.81
- 0.81
- 0.82
- 0.83
- 0.84
- 0.84
- 0.84
- 0.85
- 0.85.1
- 0.86
- 0.86
- 0.86.1
- 0.86.2
- 0.87
- 0.87.1
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (24)
- http://lists.apple.com/archives/security-announce/2006/May/msg00003.html vendor-advisoryx_refsource_APPLE
- http://lists.suse.com/archive/suse-security-announce/2006-Apr/0002.html vendor-advisoryx_refsource_SUSEPatchVendor Advisory
- http://secunia.com/advisories/19534 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/19536 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/19564 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/19567 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/19570 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/19608 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/20077 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/23719 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://sourceforge.net/project/shownotes.php?release_id=407078&group_id=86638 x_refsource_CONFIRMPatch
- http://up2date.astaro.com/2006/05/low_up2date_6202.html x_refsource_CONFIRM
- http://www.debian.org/security/2006/dsa-1024 vendor-advisoryx_refsource_DEBIANPatchVendor Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200604-06.xml vendor-advisoryx_refsource_GENTOOPatchVendor Advisory
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:067 vendor-advisoryx_refsource_MANDRIVA
- http://www.osvdb.org/24458 vdb-entryx_refsource_OSVDB
- http://www.securityfocus.com/bid/17388 vdb-entryx_refsource_BIDPatch
- http://www.securityfocus.com/bid/17951 vdb-entryx_refsource_BID
- http://www.trustix.org/errata/2006/0020 vendor-advisoryx_refsource_TRUSTIX
- http://www.us-cert.gov/cas/techalerts/TA06-132A.html third-party-advisoryx_refsource_CERTUS Government Resource
- http://www.vupen.com/english/advisories/2006/1258 vdb-entryx_refsource_VUPENVendor Advisory
- http://www.vupen.com/english/advisories/2006/1779 vdb-entryx_refsource_VUPENVendor Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-1616 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25661 vdb-entryx_refsource_XF
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 6, 2006
Updated Aug 7, 2024
Reserved Apr 5, 2006
Link CVE-2006-1615
CISA Vulnrichment
No data
Red Hat
No data
GitHub
No data