// For flags

CVE-2008-5314

ClamAV < 0.94.2 - JPEG Parsing Recursive Stack Overflow (PoC)

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

2
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the cli_check_jpeg_exploit, jpeg_check_photoshop, and jpeg_check_photoshop_8bim functions.

Vulnerabilidad de consumo de pila en el archivo libclamav/special.c en ClamAV y versiones anteriores 0.94.2, que permite a los atacantes remotos causar una denegación de servicios (caída de demonio) a través de un archivo JPEG manipulado, relativo a las funciones cli_check_jpeg_exploit, jpeg_check_photoshop y jpeg_check_photoshop_8bim.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-12-03 CVE Reserved
  • 2008-12-03 CVE Published
  • 2024-07-19 EPSS Updated
  • 2024-08-07 CVE Updated
  • 2024-08-07 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-399: Resource Management Errors
CAPEC
References (24)
URL Date SRC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
<= 0.94.1
Search vendor "Clam Anti-virus" for product "Clamav" and version " <= 0.94.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.70
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.70"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.71
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.71"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.72
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.72"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.73
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.73"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.74
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.74"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.75
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.75"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.75.1
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.75.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.80
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.80"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.80
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.80"
rc
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.80
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.80"
rc2
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.80
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.80"
rc3
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.80
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.80"
rc4
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.81
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.81"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.81
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.81"
rc1
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.82
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.82"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.83
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.83"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.84
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.84"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.84
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.84"
rc1
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.84
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.84"
rc2
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.85
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.85"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.85.1
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.85.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.86
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.86"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.86
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.86"
rc1
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.86.1
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.86.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.86.2
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.86.2"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.87
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.87"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.87.1
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.87.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.88
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.88"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.88.1
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.88.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.88.2
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.88.2"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.88.3
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.88.3"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.88.4
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.88.4"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.88.5
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.88.5"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.88.6
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.88.6"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.88.7
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.88.7"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.90
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.90"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.90.1
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.90.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.90.2
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.90.2"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.90.3
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.90.3"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.91
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.91"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.91.1
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.91.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.91.2
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.91.2"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.92
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.92"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.92.1
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.92.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.93
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.93"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.93.1
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.93.1"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.93.3
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.93.3"
-
Affected
Clam Anti-virus
Search vendor "Clam Anti-virus"
Clamav
Search vendor "Clam Anti-virus" for product "Clamav"
0.94
Search vendor "Clam Anti-virus" for product "Clamav" and version "0.94"
-
Affected