CVE-2010-4260
EPSS 9.2%
Description
Multiple unspecified vulnerabilities in pdf.c in libclamav in ClamAV before 0.96.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document, aka (1) "bb #2358" and (2) "bb #2396."
How to fix CVE-2010-4260
To remediate CVE-2010-4260, upgrade the affected package to a fixed version below.
- Debian/clamav—upgrade to 0.96.5+dfsg-1 or later
Is CVE-2010-4260 being exploited?
Moderate — EPSS is 9.2%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 0.96.5+dfsg-1