CVE-2013-7089: Infoleak
Published Nov 15, 2019
·Updated
ClamAV before 0.97.7: dbgprinthex possible information leak
Affected Software
7 affected componentsFixes available
clamav clamav<0.97.7
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Debian Debian Linux=10.0
Fedoraproject Fedora=17
Fedoraproject Fedora=18
debian/clamav
0.103.10+dfsg-0+deb11u11.4.3+dfsg-1~deb11u11.4.3+dfsg-1~deb12u21.4.3+dfsg-11.4.3+dfsg-2
Event History
Nov 15, 2019
CVE Published
via MITRE·02:23 PM
Data Sourced
via MITRE·02:23 PM
Description
Feb 18, 2026
Data Sourced
via Debian·05:50 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is CVE-2013-7089?
CVE-2013-7089 refers to a vulnerability in ClamAV before version 0.97.7 that can lead to a possible information leak.
2
How does CVE-2013-7089 impact ClamAV?
CVE-2013-7089 can allow an attacker to leak sensitive information through the dbg_printhex function in ClamAV.
3
What is the severity level of CVE-2013-7089?
CVE-2013-7089 has a severity level of 7.5 (High).
4
How can I fix the CVE-2013-7089 vulnerability in ClamAV?
To fix the CVE-2013-7089 vulnerability, it is recommended to update ClamAV to version 0.97.7 or later.
5
Where can I find more information about CVE-2013-7089?
You can find more information about CVE-2013-7089 on the following websites: [Bugzilla](https://bugzilla.clamav.net/show_bug.cgi?id=6804), [Debian Security Tracker](https://security-tracker.debian.org/tracker/CVE-2013-7089), [Gentoo GLSA](http://security.gentoo.org/glsa/glsa-201405-08.xml).