CVE-2007-0899: Critical severity clamav clamav vulnerability
Published Nov 6, 2019
·Updated
There is a possible heap overflow in libclamav/fsg.c before 0.100.0.
Affected Software
5 affected componentsFixes available
clamav clamav<0.100.0
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Debian Debian Linux=10.0
debian/clamav
0.103.10+dfsg-0+deb11u11.4.3+dfsg-1~deb11u11.4.3+dfsg-1~deb12u21.4.3+dfsg-11.4.3+dfsg-2
Event History
Nov 6, 2019
CVE Published
04:15 AM
CVE Published
via MITRE·08:10 AM
Data Sourced
via MITRE·08:10 AM
Description
Feb 17, 2026
Data Sourced
via Debian·12:02 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2007-0899?
The severity of CVE-2007-0899 is critical with a score of 9.8.
2
What is the affected software for CVE-2007-0899?
The affected software for CVE-2007-0899 includes Clamav versions before 0.100.0 and Debian Linux versions 8.0, 9.0, and 10.0.
3
How can I fix the CVE-2007-0899 vulnerability?
To fix the CVE-2007-0899 vulnerability, update Clamav to version 0.100.0 or later and update Debian Linux to the specified remedial versions.
4
What is the CWE classification for CVE-2007-0899?
The CWE classification for CVE-2007-0899 is CWE-787: Out-of-bounds Write.
5
Where can I find more information about CVE-2007-0899?
More information about CVE-2007-0899 can be found at https://security-tracker.debian.org/tracker/CVE-2007-0899.