📦 Clamav

by Clamav

🔍 What is Clamav?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-20260

CRITICAL CVSS 9.8 Jun 18, 2025

A critical buffer overflow vulnerability in ClamAV's PDF scanning allows remote attackers to crash the antivirus service or potentially execute arbitrary code. This affects all systems running vulnera...

CVE-2023-20032

CRITICAL CVSS 9.8 Mar 1, 2023

A heap buffer overflow vulnerability in ClamAV's HFS+ partition file parser allows remote unauthenticated attackers to execute arbitrary code or cause denial of service. This affects ClamAV versions 1...

CVE-2024-20380

HIGH CVSS 7.5 Apr 18, 2024

A vulnerability in ClamAV's HTML parser allows remote attackers to cause denial of service by submitting crafted HTML files. This affects systems running vulnerable versions of ClamAV that scan untrus...

CVE-2022-20770

HIGH CVSS 8.6 May 4, 2022

A vulnerability in the CHM file parser of ClamAV allows an unauthenticated remote attacker to cause a denial of service condition on affected devices. This affects ClamAV versions 0.104.0 through 0.10...

CVE-2022-20698

HIGH CVSS 7.5 Jan 14, 2022

This vulnerability in ClamAV's OOXML parsing module allows remote attackers to crash the antivirus scanning process by sending specially crafted OOXML files. This causes a denial of service, potential...

CVE-2021-1405

HIGH CVSS 7.5 Apr 8, 2021

This vulnerability in ClamAV's email parsing module allows an unauthenticated remote attacker to cause a denial of service by sending a crafted email, crashing the scanning process. It affects ClamAV ...

CVE-2021-1252

HIGH CVSS 7.5 Apr 8, 2021

This vulnerability in ClamAV's Excel macro parser allows remote attackers to cause denial of service by sending specially crafted Excel files. When exploited, it causes the ClamAV scanning process to ...

CVE-2025-20234

MEDIUM CVSS 5.3 Jun 18, 2025

A memory overread vulnerability in ClamAV's Universal Disk Format (UDF) processing allows unauthenticated remote attackers to cause denial of service by submitting crafted files. This affects systems ...

CVE-2024-20505

MEDIUM CVSS 4.0 Sep 4, 2024

An out-of-bounds read vulnerability in ClamAV's PDF parsing module allows remote attackers to cause denial of service by submitting crafted PDF files. This affects ClamAV scanning processes on devices...