First published: Mon Oct 16 2006(Updated: )
Unspecified vulnerability in ClamAV before 0.88.5 allows remote attackers to cause a denial of service (scanning service crash) via a crafted Compressed HTML Help (CHM) file that causes ClamAV to "read an invalid memory location."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco ClamAV | =0.24 | |
Cisco ClamAV | =0.20 | |
Cisco ClamAV | =0.84 | |
Cisco ClamAV | =0.80 | |
Cisco ClamAV | =0.84_rc1 | |
Cisco ClamAV | =0.15 | |
Cisco ClamAV | =0.80_rc3 | |
Cisco ClamAV | <=0.88.4 | |
Cisco ClamAV | =0.80_rc4 | |
Cisco ClamAV | =0.65 | |
Cisco ClamAV | =0.75 | |
Cisco ClamAV | =0.68 | |
Cisco ClamAV | =0.71 | |
Cisco ClamAV | =0.88.3 | |
Cisco ClamAV | =0.86.1 | |
Cisco ClamAV | =0.82 | |
Cisco ClamAV | =0.88.1 | |
Cisco ClamAV | =0.73 | |
Cisco ClamAV | =0.72 | |
Cisco ClamAV | =0.85.1 | |
Cisco ClamAV | =. | |
Cisco ClamAV | =0.87 | |
Cisco ClamAV | =0.86_rc1 | |
Cisco ClamAV | =0.85 | |
Cisco ClamAV | =0.80_rc1 | |
Cisco ClamAV | =0.74 | |
Cisco ClamAV | =0.75.1 | |
Cisco ClamAV | =0.86.2 | |
Cisco ClamAV | =0.67 | |
Cisco ClamAV | =0.81 | |
Cisco ClamAV | =0.21 | |
Cisco ClamAV | =0.81_rc1 | |
Cisco ClamAV | =0.54 | |
Cisco ClamAV | =0.53 | |
Cisco ClamAV | =0.70 | |
Cisco ClamAV | =0.60p | |
Cisco ClamAV | =0.80_rc2 | |
Cisco ClamAV | =0.60 | |
Cisco ClamAV | =0.86 | |
Cisco ClamAV | =0.83 | |
Cisco ClamAV | =0.68.1 | |
Cisco ClamAV | =0.88 | |
Cisco ClamAV | =0.87.1 | |
Cisco ClamAV | =0.84_rc2 | |
Cisco ClamAV | =0.51 | |
Cisco ClamAV | =0.23 | |
Cisco ClamAV | =0.52 | |
Cisco ClamAV | =0.22 | |
<=0.88.4 | ||
=. | ||
=0.15 | ||
=0.20 | ||
=0.21 | ||
=0.22 | ||
=0.23 | ||
=0.24 | ||
=0.51 | ||
=0.52 | ||
=0.53 | ||
=0.54 | ||
=0.60 | ||
=0.60p | ||
=0.65 | ||
=0.67 | ||
=0.68 | ||
=0.68.1 | ||
=0.70 | ||
=0.71 | ||
=0.72 | ||
=0.73 | ||
=0.74 | ||
=0.75 | ||
=0.75.1 | ||
=0.80 | ||
=0.80_rc1 | ||
=0.80_rc2 | ||
=0.80_rc3 | ||
=0.80_rc4 | ||
=0.81 | ||
=0.81_rc1 | ||
=0.82 | ||
=0.83 | ||
=0.84 | ||
=0.84_rc1 | ||
=0.84_rc2 | ||
=0.85 | ||
=0.85.1 | ||
=0.86 | ||
=0.86.1 | ||
=0.86.2 | ||
=0.86_rc1 | ||
=0.87 | ||
=0.87.1 | ||
=0.88 | ||
=0.88.1 | ||
=0.88.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-5295 is classified as a denial of service vulnerability.
To fix CVE-2006-5295, upgrade ClamAV to version 0.88.5 or later.
CVE-2006-5295 allows remote attackers to crash the ClamAV scanning service.
CVE-2006-5295 affects all versions of ClamAV prior to 0.88.5.
Yes, CVE-2006-5295 can be exploited remotely using a crafted Compressed HTML Help (CHM) file.