CVE-2006-4182
clamav
EPSS 16.6%
Description
Integer overflow in ClamAV 0.88.1 and 0.88.4, and other versions before 0.88.5, allows remote attackers to cause a denial of service (scanning service crash) and execute arbitrary code via a crafted Portable Executable (PE) file that leads to a heap-based buffer overflow when less memory is allocated than expected.
How to fix CVE-2006-4182
To remediate CVE-2006-4182, upgrade the affected package to a fixed version below.
- Debian/clamav—upgrade to 0.88.5-1 or later
- Debian/clamav—upgrade to 0.84-2.sarge.11 or later
Is CVE-2006-4182 being exploited?
Moderate — EPSS is 16.6%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (2)
- from 0, < 0.88.5-1
- from 0, < 0.84-2.sarge.11