A vulnerability in the InstallShield file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper handling of temporary resources during file scanning. An attacker could exploit this vulnerability by submitting a crafted InstallShield file to be scanned by ClamAV on an affected device. A successful exploit could allow the attacker to terminate the ClamAV scanning process and temporarily consume available system resources, resulting in a DoS condition on the affected software.
| Vendor | Product | Versions |
|---|---|---|
| cis | secure_endpoint | 7.0.5, 6.2.19, 7.3.3, 7.2.13, 6.1.5, 6.3.1, 6.2.5, 7.3.5, 6.2.1, 7.2.7, 7.1.1, 6.3.5, 6.2.9, 7.3.1, 6.1.7, 7.2.11, 7.2.3, 7.1.5, 6.3.3, 7.3.9, 6.2.3, 6.1.9, 6.0.9, 7.2.5, 6.0.7, 6.3.7, 1.12.3, 1.8.0, 1.11.1, 1.12.4, 1.10.0, 1.12.0, 1.8.1, 1.10.1, 1.12.1, 1.12.6, 1.14.0, 1.10.2, 1.12.7, 1.12.2, 1.6.0, 1.9.0, 1.11.0, 1.7.0, 1.13.0, 1.8.4, 1.13.1, 1.9.1, 1.12.5, 1.13.2, 8.1.7.21512, 8.1.7, 8.1.5, 8.1.3.21242, 8.1.3, 8.1.5.21322, 8.1.7.21417, 1.14.1, 1.15.1, 1.15.2, 1.15.3, 1.15.4, 1.15.5, 1.15.6, 1.16.0, 1.16.1, 1.16.2, 1.16.3, 1.18.0, 1.18.1, 1.20.0, 1.21.0, 1.21.1, 1.21.2, 1.21.3, 1.22.0, 1.22.1, 1.22.2, 1.22.3, 1.22.4, 1.24.0, 1.24.1, 1.24.2, 1.24.3, 1.24.4, 1.26.0, 1.24.5, 1.26.1, 1.27.0, 1.15.0, 1.17.0, 1.17.1, 1.17.2, 1.19.0, 1.20.1, 1.20.2, 1.20.3, 1.20.4, 1.20.5, 1.20.6, 1.23.0, 1.23.1, 1.20.7, 1.20.8, 1.25.0, 1.25.1, 1.25.2, 1.27.1, 1.27.2, 7.3.13, 7.3.15, 7.4.1, 7.4.1.20425, 7.4.1.20439, 7.4.3, 7.4.3.20679, 7.4.5, 7.5.1.20813, 7.5.1.20833, 7.5.3, 7.5.5, 8.0.1.21160, 8.0.1.21164, 7.5.7, 7.5.9, 7.5.11, 8.1.7.21585, 7.5.13.21586, 7.5.13.21598, 8.2.1.21612, 8.2.1.21650, 7.5.15.21611, 7.5.17.21680, 8.2.3.30119, 8.2.4.30130, 8.4.0, 7.5.19, 8.4.1.30298, 8.4.2.30317, 8.4.1.30307, 7.5.20, 8.4.3, 8.4.4.30419, 8.4.4.30467, 7.5.21.21732, 8.4.5.30483 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| clamav | clamav | cve_cpe | 95% |
| open source | clamav | cert_advisory | 90% |
Updated severity to CRITICAL, noted no exploit exists, and provided the fixed version number 8.4.5.30483.
Initial creation