CVE-2021-1405
Clam AntiVirus (ClamAV) PDF Parser Denial of Service Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software version 0.103.1 and all prior versions could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to improper variable initialization that may result in an NULL pointer read. An attacker could exploit this vulnerability by sending a crafted email to an affected device. An exploit could allow the attacker to cause the ClamAV scanning process crash, resulting in a denial of service condition.
Una vulnerabilidad en el módulo de análisis de correo electrónico del software Clam AntiVirus (ClamAV) versión 0.103.1 y todas las versiones anteriores podría permitir a un atacante remoto no autenticado provocar una condición de denegación de servicio en un dispositivo afectado. La vulnerabilidad se debe a una inicialización incorrecta de las variables que puede dar lugar a la lectura de un puntero NULL. Un atacante podría explotar esta vulnerabilidad enviando un correo electrónico manipulado a un dispositivo afectado. Una explotación podría permitir al atacante causar la caída del proceso de escaneo de ClamaV, resultando en una condición de denegación de servicio
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2020-11-13 CVE Reserved
- 2021-04-07 CVE Published
- 2023-12-23 EPSS Updated
- 2024-11-08 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
- CWE-909: Missing Initialization of Resource
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
https://lists.debian.org/debian-lts-announce/2021/04/msg00012.html | Mailing List |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://blog.clamav.net/2021/04/clamav-01032-security-patch-release.html | 2022-08-05 | |
https://security.gentoo.org/glsa/202104-07 | 2022-08-05 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Clamav Search vendor "Clamav" | Clamav Search vendor "Clamav" for product "Clamav" | <= 0.103.1 Search vendor "Clamav" for product "Clamav" and version " <= 0.103.1" | - |
Affected
| ||||||
Debian Search vendor "Debian" | Debian Linux Search vendor "Debian" for product "Debian Linux" | 9.0 Search vendor "Debian" for product "Debian Linux" and version "9.0" | - |
Affected
|