CVE-2018-0202: Input Validation
clamscan in ClamAV before 0.99.4 contains a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation checking mechanisms when handling Portable Document Format (.pdf) files sent to an affected device. An unauthenticated, remote attacker could exploit this vulnerability by sending a crafted .pdf file to an affected device. This action could cause an out-of-bounds read when ClamAV scans the malicious file, allowing the attacker to cause a DoS condition. This concerns pdfparsearray and pdfparsestring in libclamav/pdfng.c. Cisco Bug IDs: CSCvh91380, CSCvh91400.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2018-0202?
CVE-2018-0202 is a vulnerability in ClamAV before 0.99.4 that could allow an unauthenticated remote attacker to cause a denial of service (DoS) condition on an affected device.
How severe is CVE-2018-0202?
CVE-2018-0202 has a severity rating of 5.5 (medium).
What is the affected software for CVE-2018-0202?
The affected software for CVE-2018-0202 includes ClamAV versions before 0.99.4.
How do I fix CVE-2018-0202?
To fix CVE-2018-0202, update to ClamAV version 0.99.4 or higher.
Are there any additional resources about CVE-2018-0202?
Yes, you can find more information about CVE-2018-0202 in the following references: [Link 1](https://lists.debian.org/debian-lts-announce/2018/03/msg00011.html), [Link 2](https://bugzilla.clamav.net/show_bug.cgi?id=11973), [Link 3](https://bugzilla.clamav.net/show_bug.cgi?id=11980).