fkie_cve-2008-5050
Vulnerability from fkie_nvd
Published
2008-11-13 02:30
Modified
2025-04-09 00:30
Severity ?
Summary
Off-by-one error in the get_unicode_name function (libclamav/vba_extract.c) in Clam Anti-Virus (ClamAV) before 0.94.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted VBA project file, which triggers a heap-based buffer overflow.
References
cve@mitre.orghttp://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html
cve@mitre.orghttp://lists.grok.org.uk/pipermail/full-disclosure/2008-November/065530.htmlExploit
cve@mitre.orghttp://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.html
cve@mitre.orghttp://secunia.com/advisories/32663Vendor Advisory
cve@mitre.orghttp://secunia.com/advisories/32699
cve@mitre.orghttp://secunia.com/advisories/32765
cve@mitre.orghttp://secunia.com/advisories/32872
cve@mitre.orghttp://secunia.com/advisories/33016
cve@mitre.orghttp://secunia.com/advisories/33317
cve@mitre.orghttp://secunia.com/advisories/33937
cve@mitre.orghttp://security.gentoo.org/glsa/glsa-200812-21.xml
cve@mitre.orghttp://securityreason.com/securityalert/4579
cve@mitre.orghttp://sourceforge.net/project/shownotes.php?release_id=637952&group_id=86638
cve@mitre.orghttp://support.apple.com/kb/HT3438
cve@mitre.orghttp://www.debian.org/security/2008/dsa-1680
cve@mitre.orghttp://www.mandriva.com/security/advisories?name=MDVSA-2008:229
cve@mitre.orghttp://www.securityfocus.com/archive/1/498169/100/0/threaded
cve@mitre.orghttp://www.securityfocus.com/bid/32207Patch
cve@mitre.orghttp://www.securitytracker.com/id?1021159
cve@mitre.orghttp://www.ubuntu.com/usn/usn-672-1
cve@mitre.orghttp://www.vupen.com/english/advisories/2008/3085
cve@mitre.orghttp://www.vupen.com/english/advisories/2009/0422
cve@mitre.orghttps://exchange.xforce.ibmcloud.com/vulnerabilities/46462
cve@mitre.orghttps://www.redhat.com/archives/fedora-package-announce/2008-November/msg00332.html
cve@mitre.orghttps://www.redhat.com/archives/fedora-package-announce/2008-November/msg00348.html
af854a3a-2127-422b-91ae-364da2661108http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html
af854a3a-2127-422b-91ae-364da2661108http://lists.grok.org.uk/pipermail/full-disclosure/2008-November/065530.htmlExploit
af854a3a-2127-422b-91ae-364da2661108http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.html
af854a3a-2127-422b-91ae-364da2661108http://secunia.com/advisories/32663Vendor Advisory
af854a3a-2127-422b-91ae-364da2661108http://secunia.com/advisories/32699
af854a3a-2127-422b-91ae-364da2661108http://secunia.com/advisories/32765
af854a3a-2127-422b-91ae-364da2661108http://secunia.com/advisories/32872
af854a3a-2127-422b-91ae-364da2661108http://secunia.com/advisories/33016
af854a3a-2127-422b-91ae-364da2661108http://secunia.com/advisories/33317
af854a3a-2127-422b-91ae-364da2661108http://secunia.com/advisories/33937
af854a3a-2127-422b-91ae-364da2661108http://security.gentoo.org/glsa/glsa-200812-21.xml
af854a3a-2127-422b-91ae-364da2661108http://securityreason.com/securityalert/4579
af854a3a-2127-422b-91ae-364da2661108http://sourceforge.net/project/shownotes.php?release_id=637952&group_id=86638
af854a3a-2127-422b-91ae-364da2661108http://support.apple.com/kb/HT3438
af854a3a-2127-422b-91ae-364da2661108http://www.debian.org/security/2008/dsa-1680
af854a3a-2127-422b-91ae-364da2661108http://www.mandriva.com/security/advisories?name=MDVSA-2008:229
af854a3a-2127-422b-91ae-364da2661108http://www.securityfocus.com/archive/1/498169/100/0/threaded
af854a3a-2127-422b-91ae-364da2661108http://www.securityfocus.com/bid/32207Patch
af854a3a-2127-422b-91ae-364da2661108http://www.securitytracker.com/id?1021159
af854a3a-2127-422b-91ae-364da2661108http://www.ubuntu.com/usn/usn-672-1
af854a3a-2127-422b-91ae-364da2661108http://www.vupen.com/english/advisories/2008/3085
af854a3a-2127-422b-91ae-364da2661108http://www.vupen.com/english/advisories/2009/0422
af854a3a-2127-422b-91ae-364da2661108https://exchange.xforce.ibmcloud.com/vulnerabilities/46462
af854a3a-2127-422b-91ae-364da2661108https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00332.html
af854a3a-2127-422b-91ae-364da2661108https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00348.html
Impacted products
Vendor Product Version
clam_anti-virus clamav *
clam_anti-virus clamav 0.01
clam_anti-virus clamav 0.02
clam_anti-virus clamav 0.03
clam_anti-virus clamav 0.04
clam_anti-virus clamav 0.05
clam_anti-virus clamav 0.06
clam_anti-virus clamav 0.10
clam_anti-virus clamav 0.11
clam_anti-virus clamav 0.12
clam_anti-virus clamav 0.13
clam_anti-virus clamav 0.14
clam_anti-virus clamav 0.14
clam_anti-virus clamav 0.15
clam_anti-virus clamav 0.20
clam_anti-virus clamav 0.21
clam_anti-virus clamav 0.22
clam_anti-virus clamav 0.23
clam_anti-virus clamav 0.24
clam_anti-virus clamav 0.51
clam_anti-virus clamav 0.52
clam_anti-virus clamav 0.53
clam_anti-virus clamav 0.54
clam_anti-virus clamav 0.60
clam_anti-virus clamav 0.60p
clam_anti-virus clamav 0.65
clam_anti-virus clamav 0.67
clam_anti-virus clamav 0.68
clam_anti-virus clamav 0.68.1
clam_anti-virus clamav 0.70
clam_anti-virus clamav 0.71
clam_anti-virus clamav 0.72
clam_anti-virus clamav 0.73
clam_anti-virus clamav 0.74
clam_anti-virus clamav 0.75
clam_anti-virus clamav 0.75.1
clam_anti-virus clamav 0.80
clam_anti-virus clamav 0.80
clam_anti-virus clamav 0.80
clam_anti-virus clamav 0.80
clam_anti-virus clamav 0.80
clam_anti-virus clamav 0.80_rc1
clam_anti-virus clamav 0.80_rc2
clam_anti-virus clamav 0.80_rc3
clam_anti-virus clamav 0.80_rc4
clam_anti-virus clamav 0.81
clam_anti-virus clamav 0.81
clam_anti-virus clamav 0.81_rc1
clam_anti-virus clamav 0.82
clam_anti-virus clamav 0.83
clam_anti-virus clamav 0.84
clam_anti-virus clamav 0.84
clam_anti-virus clamav 0.84
clam_anti-virus clamav 0.84_rc1
clam_anti-virus clamav 0.84_rc2
clam_anti-virus clamav 0.85
clam_anti-virus clamav 0.85.1
clam_anti-virus clamav 0.86
clam_anti-virus clamav 0.86
clam_anti-virus clamav 0.86.1
clam_anti-virus clamav 0.86.2
clam_anti-virus clamav 0.86_rc1
clam_anti-virus clamav 0.87
clam_anti-virus clamav 0.87.1
clam_anti-virus clamav 0.88
clam_anti-virus clamav 0.88.1
clam_anti-virus clamav 0.88.2
clam_anti-virus clamav 0.88.3
clam_anti-virus clamav 0.88.4
clam_anti-virus clamav 0.88.5
clam_anti-virus clamav 0.88.6
clam_anti-virus clamav 0.88.7
clam_anti-virus clamav 0.88.7
clam_anti-virus clamav 0.88.7
clam_anti-virus clamav 0.90
clam_anti-virus clamav 0.90.1
clam_anti-virus clamav 0.90.1
clam_anti-virus clamav 0.90.2
clam_anti-virus clamav 0.90.2
clam_anti-virus clamav 0.90.3
clam_anti-virus clamav 0.90.3
clam_anti-virus clamav 0.90.3
clam_anti-virus clamav 0.90_rc1.1
clam_anti-virus clamav 0.90_rc2
clam_anti-virus clamav 0.90_rc3
clam_anti-virus clamav 0.90rc1
clam_anti-virus clamav 0.91
clam_anti-virus clamav 0.91.1
clam_anti-virus clamav 0.91.2
clam_anti-virus clamav 0.91.2
clam_anti-virus clamav 0.91rc1
clam_anti-virus clamav 0.91rc2
clam_anti-virus clamav 0.92
clam_anti-virus clamav 0.92
clam_anti-virus clamav 0.92.1
clam_anti-virus clamav 0.93
clam_anti-virus clamav 0.93.1
clam_anti-virus clamav 0.93.2
clam_anti-virus clamav 0.93.3



{
  "configurations": [
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "B8A8B81E-0C61-4B3E-9BE6-BFE38A154EF0",
              "versionEndIncluding": "0.94",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.01:*:*:*:*:*:*:*",
              "matchCriteriaId": "ACA56643-1912-4D32-84DF-8AF40BE4E90C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.02:*:*:*:*:*:*:*",
              "matchCriteriaId": "B853E106-F383-4C22-912D-77276A2DAFC6",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.03:*:*:*:*:*:*:*",
              "matchCriteriaId": "5265D3FC-EFF7-4661-AD21-01662C05B6D1",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.04:*:*:*:*:*:*:*",
              "matchCriteriaId": "F76D43F5-A621-4B5C-9FE6-0E650BCF4FC3",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.05:*:*:*:*:*:*:*",
              "matchCriteriaId": "A5C04564-5C90-4058-925C-6BFB3AEECD50",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.06:*:*:*:*:*:*:*",
              "matchCriteriaId": "91599B52-AB8A-4423-8B99-2526E43B1C97",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.10:*:*:*:*:*:*:*",
              "matchCriteriaId": "4EF8A6B6-D1EC-49F9-BE12-AEF22016BE83",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.11:*:*:*:*:*:*:*",
              "matchCriteriaId": "B03FC481-8143-411F-AF74-86433188346D",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.12:*:*:*:*:*:*:*",
              "matchCriteriaId": "7A6E1E0C-7240-47A7-8C35-2C48D1C56F11",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.13:*:*:*:*:*:*:*",
              "matchCriteriaId": "057EEF4D-3101-4575-83E3-34BA2823DE73",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.14:*:*:*:*:*:*:*",
              "matchCriteriaId": "F86DA3C9-C6D5-4B04-9EAA-54350BE8CB26",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.14:pre:*:*:*:*:*:*",
              "matchCriteriaId": "FB031F8A-2D70-46F4-BA98-64CACCF5A394",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.15:*:*:*:*:*:*:*",
              "matchCriteriaId": "4C9A0FA4-A4AE-4C90-98DA-8AF5ABB03CE6",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.20:*:*:*:*:*:*:*",
              "matchCriteriaId": "D0E9BC10-5F5B-499A-893C-1EEF6F1180B7",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.21:*:*:*:*:*:*:*",
              "matchCriteriaId": "06A9B47A-8FC3-4BD2-A55F-9150307619B8",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.22:*:*:*:*:*:*:*",
              "matchCriteriaId": "7068873F-E45D-4471-B55E-BF7B0E3AFEEC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.23:*:*:*:*:*:*:*",
              "matchCriteriaId": "695F0967-1529-42DB-8978-8B9192F7F615",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.24:*:*:*:*:*:*:*",
              "matchCriteriaId": "073BBAA9-7C7B-4D07-8943-7459DD2BAAC3",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.51:*:*:*:*:*:*:*",
              "matchCriteriaId": "BB72ED94-7832-43CF-81CF-27F88CAC6E91",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.52:*:*:*:*:*:*:*",
              "matchCriteriaId": "2C48C927-2D02-4B7E-82C3-0BBF29AAB24A",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.53:*:*:*:*:*:*:*",
              "matchCriteriaId": "802BFF6B-5D9F-49AE-B96A-86A85E0F1034",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.54:*:*:*:*:*:*:*",
              "matchCriteriaId": "5F7B2943-BC22-4735-8AA5-AADBEA685FAF",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.60:*:*:*:*:*:*:*",
              "matchCriteriaId": "C6257524-7FC5-40CA-9BDA-82B8565C5BEC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.60p:*:*:*:*:*:*:*",
              "matchCriteriaId": "35EBA938-DC66-40EA-8C66-38296AB57B57",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.65:*:*:*:*:*:*:*",
              "matchCriteriaId": "395AACCC-C20A-4BC1-BF62-D40FF71B7360",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.67:*:*:*:*:*:*:*",
              "matchCriteriaId": "0F52C121-B8B8-43A8-AFAB-E85474021919",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.68:*:*:*:*:*:*:*",
              "matchCriteriaId": "659B4C39-0F0F-40C5-9B7E-0D00330611F2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.68.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "7793F3D5-E93C-46C8-ADCA-EF60BF4EC3C4",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.70:*:*:*:*:*:*:*",
              "matchCriteriaId": "508C140C-2F87-4270-85B0-00EA6678A344",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.71:*:*:*:*:*:*:*",
              "matchCriteriaId": "3033A4A2-47E9-434F-BA0A-0F2476A67899",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.72:*:*:*:*:*:*:*",
              "matchCriteriaId": "4680089D-DEFB-41E3-AFAF-6DA9252F2DCD",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.73:*:*:*:*:*:*:*",
              "matchCriteriaId": "307ED99C-32B8-4C0C-8C55-E2BA6EDB961F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.74:*:*:*:*:*:*:*",
              "matchCriteriaId": "DEF4F0DE-DC05-4F06-BC2D-09BAEAB25184",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.75:*:*:*:*:*:*:*",
              "matchCriteriaId": "0C1EDFB4-B0C8-4832-BCA1-C35D28877581",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.75.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "BF60319C-CFFB-47F4-BDCB-90A5D0FB4240",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.80:*:*:*:*:*:*:*",
              "matchCriteriaId": "4EF47B2A-4520-4872-987D-2EF88344ADB2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.80:rc:*:*:*:*:*:*",
              "matchCriteriaId": "5909491A-3D43-4648-B0F9-983BF2BE13B4",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.80:rc2:*:*:*:*:*:*",
              "matchCriteriaId": "3DB0BD14-60D1-4482-A91E-AFA501DE1F14",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.80:rc3:*:*:*:*:*:*",
              "matchCriteriaId": "FFFDE6BB-38A1-4074-A3E1-E59BB5E7ED74",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.80:rc4:*:*:*:*:*:*",
              "matchCriteriaId": "79FC2D39-6F8E-4267-8D4B-0C59D28A0E27",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.80_rc1:*:*:*:*:*:*:*",
              "matchCriteriaId": "12A4541A-2560-482A-BAEA-275579B499B2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.80_rc2:*:*:*:*:*:*:*",
              "matchCriteriaId": "9006F64F-D72B-49C4-9F51-8AD9273957B5",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.80_rc3:*:*:*:*:*:*:*",
              "matchCriteriaId": "A5698AB2-94DE-480D-9E55-C05871562B8C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.80_rc4:*:*:*:*:*:*:*",
              "matchCriteriaId": "A44C0C8F-750B-4237-9E2F-1BEF67F2BCA5",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.81:*:*:*:*:*:*:*",
              "matchCriteriaId": "FC31E071-6BB8-45FE-AA09-E7E459B549D2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.81:rc1:*:*:*:*:*:*",
              "matchCriteriaId": "89533C50-275D-440D-88B4-363B3DED39E4",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.81_rc1:*:*:*:*:*:*:*",
              "matchCriteriaId": "C4CBE9C9-A1DE-4C68-B84D-C735A9A700E3",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.82:*:*:*:*:*:*:*",
              "matchCriteriaId": "53D884A1-305C-416A-9851-3A7D875FDC47",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.83:*:*:*:*:*:*:*",
              "matchCriteriaId": "E58A6CBC-ED1C-430D-8F43-88694971A850",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.84:*:*:*:*:*:*:*",
              "matchCriteriaId": "E330A535-A376-4BFF-BB1B-31E83370FC02",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.84:rc1:*:*:*:*:*:*",
              "matchCriteriaId": "E787E42E-3339-47FD-904E-5E3C73991CA9",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.84:rc2:*:*:*:*:*:*",
              "matchCriteriaId": "F21E03C7-0293-402C-ACAE-41E7F11B7AF2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.84_rc1:*:*:*:*:*:*:*",
              "matchCriteriaId": "3E389E1C-46A6-4B5C-9091-8AAE5FFDC4B8",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.84_rc2:*:*:*:*:*:*:*",
              "matchCriteriaId": "F1ADBDEE-1421-42E5-8DE2-404087613B75",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.85:*:*:*:*:*:*:*",
              "matchCriteriaId": "EDF94B1E-E8D4-4952-9081-1254F335445D",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.85.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "8657268E-4C78-4565-9966-7329095A7905",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.86:*:*:*:*:*:*:*",
              "matchCriteriaId": "8D20F0D5-2291-4F24-94DB-180CDF926B93",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.86:rc1:*:*:*:*:*:*",
              "matchCriteriaId": "B8BD1ADF-C784-4E43-A6A5-09D416E96AE4",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.86.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "A0E2884A-615F-4063-8FB7-EC157C3EC07F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.86.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "D7BC41B7-272F-44BB-BD48-6C9231402526",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.86_rc1:*:*:*:*:*:*:*",
              "matchCriteriaId": "0138546B-3704-45FB-8115-05C12F9935D7",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.87:*:*:*:*:*:*:*",
              "matchCriteriaId": "D23F1D35-6073-49B0-8DD4-C58AEE2CC83C",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.87.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "D87DA1D8-59AC-4372-BBFC-ED8BC6603AAC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88:*:*:*:*:*:*:*",
              "matchCriteriaId": "5F56722F-F61A-404B-B0B2-1C92C22D0436",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "D00EBC44-B4AB-443F-A063-8C8CB64F5F94",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "FFFA6F1E-9F25-400C-B626-3B9EDA396913",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "2DB68680-FA6D-4235-90DA-E3DF0E5BB666",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88.4:*:*:*:*:*:*:*",
              "matchCriteriaId": "0E5BCBA5-0CE1-4112-8C3D-BAED9C5537B9",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88.5:*:*:*:*:*:*:*",
              "matchCriteriaId": "3908B34C-823E-47BA-8A64-23547D2AB027",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88.6:*:*:*:*:*:*:*",
              "matchCriteriaId": "557C5437-4B40-4E89-A23D-96B95829281D",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88.7:*:*:*:*:*:*:*",
              "matchCriteriaId": "A3394AD1-C667-46E7-82D3-E2E381CCC9FA",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88.7:p0:*:*:*:*:*:*",
              "matchCriteriaId": "B44285AE-655B-4959-A7DC-4FADFF65F7C8",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.88.7:p1:*:*:*:*:*:*",
              "matchCriteriaId": "E702EF3E-D8B8-4D98-AFB0-ADB1223BF43E",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90:*:*:*:*:*:*:*",
              "matchCriteriaId": "142588F8-15C3-4288-BE7C-B2F7447BD60F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "EC18418B-7477-436C-A24A-081701968DEF",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90.1:p0:*:*:*:*:*:*",
              "matchCriteriaId": "1BDC65CA-CE5D-4B69-B71B-CEE18DC85945",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "1A85C689-95E0-41F7-83D9-5A8B0AB42390",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90.2:p0:*:*:*:*:*:*",
              "matchCriteriaId": "E72D92F1-6316-4CCF-89A8-03FBAD10E6AA",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "BC24A055-278C-4A78-8C68-AC7618EF3EF5",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90.3:p0:*:*:*:*:*:*",
              "matchCriteriaId": "04440EB7-E69B-4994-B058-9B476E061495",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90.3:p1:*:*:*:*:*:*",
              "matchCriteriaId": "01E81F38-9805-4FD8-8867-48C06762349B",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90_rc1.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "5B116E9A-0646-4AD5-A531-C35124AB02DC",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90_rc2:*:*:*:*:*:*:*",
              "matchCriteriaId": "3F3C25BA-72EF-4588-A90A-B323A3407FAD",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90_rc3:*:*:*:*:*:*:*",
              "matchCriteriaId": "01FDAEBC-0B2E-4F60-8B59-13A93B1AF206",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.90rc1:*:*:*:*:*:*:*",
              "matchCriteriaId": "E021DD71-1845-4899-BB87-8445147AD93F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.91:*:*:*:*:*:*:*",
              "matchCriteriaId": "CC992A3B-24B4-48D8-BFBF-9B7884D11D28",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.91.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "8EFAC7BA-2A39-46A8-BF91-5537532F45D2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.91.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "733CB165-98CD-4F8E-8A6D-07CF522634BA",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.91.2:p0:*:*:*:*:*:*",
              "matchCriteriaId": "EE5B77A2-99D7-4553-B29F-B9EE15B96218",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.91rc1:*:*:*:*:*:*:*",
              "matchCriteriaId": "C721E8E3-FB32-41A1-B572-7DB06D9ECB74",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.91rc2:*:*:*:*:*:*:*",
              "matchCriteriaId": "4DCE173B-6229-42C9-8481-66F5727E464A",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.92:*:*:*:*:*:*:*",
              "matchCriteriaId": "8670A5ED-C41E-40B9-B2C9-68F22734B444",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.92:p0:*:*:*:*:*:*",
              "matchCriteriaId": "D8364198-B569-43FB-A946-A46969BCF2F2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.92.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "C8BE6F91-5442-4156-B137-E4AD3E21CF88",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.93:*:*:*:*:*:*:*",
              "matchCriteriaId": "40F14DB9-8437-4CEB-9D63-098FD9E604E7",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.93.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "A4C92175-5E97-4197-8495-25900134B652",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.93.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "4C78BC60-3E5F-4356-B27A-3A38646890E5",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:clam_anti-virus:clamav:0.93.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "5CF50FEF-9840-4B6C-BC60-02956F9E3099",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ]
    }
  ],
  "cveTags": [],
  "descriptions": [
    {
      "lang": "en",
      "value": "Off-by-one error in the get_unicode_name function (libclamav/vba_extract.c) in Clam Anti-Virus (ClamAV) before 0.94.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted VBA project file, which triggers a heap-based buffer overflow."
    },
    {
      "lang": "es",
      "value": "Error de superaci\u00f3n de l\u00edmite en la funci\u00f3n get_unicode_name (libclamav/vba_extract.c) en Clam Anti-Virus (ClamAV) antes de v0.94.1 permite a atacantes remotos provocar una denegaci\u00f3n de servicio (ca\u00edda) y puede que ejecutar c\u00f3digo de su elecci\u00f3n mediante un archivo de proyecto VBA manipulado lo que dispara un desbordamiento de b\u00fafer basado en mont\u00edculo."
    }
  ],
  "id": "CVE-2008-5050",
  "lastModified": "2025-04-09T00:30:58.490",
  "metrics": {
    "cvssMetricV2": [
      {
        "acInsufInfo": false,
        "baseSeverity": "HIGH",
        "cvssData": {
          "accessComplexity": "MEDIUM",
          "accessVector": "NETWORK",
          "authentication": "NONE",
          "availabilityImpact": "COMPLETE",
          "baseScore": 9.3,
          "confidentialityImpact": "COMPLETE",
          "integrityImpact": "COMPLETE",
          "vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "version": "2.0"
        },
        "exploitabilityScore": 8.6,
        "impactScore": 10.0,
        "obtainAllPrivilege": true,
        "obtainOtherPrivilege": false,
        "obtainUserPrivilege": false,
        "source": "nvd@nist.gov",
        "type": "Primary",
        "userInteractionRequired": true
      }
    ]
  },
  "published": "2008-11-13T02:30:01.027",
  "references": [
    {
      "source": "cve@mitre.org",
      "url": "http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html"
    },
    {
      "source": "cve@mitre.org",
      "tags": [
        "Exploit"
      ],
      "url": "http://lists.grok.org.uk/pipermail/full-disclosure/2008-November/065530.html"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.html"
    },
    {
      "source": "cve@mitre.org",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://secunia.com/advisories/32663"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://secunia.com/advisories/32699"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://secunia.com/advisories/32765"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://secunia.com/advisories/32872"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://secunia.com/advisories/33016"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://secunia.com/advisories/33317"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://secunia.com/advisories/33937"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://security.gentoo.org/glsa/glsa-200812-21.xml"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://securityreason.com/securityalert/4579"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://sourceforge.net/project/shownotes.php?release_id=637952\u0026group_id=86638"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://support.apple.com/kb/HT3438"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://www.debian.org/security/2008/dsa-1680"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2008:229"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://www.securityfocus.com/archive/1/498169/100/0/threaded"
    },
    {
      "source": "cve@mitre.org",
      "tags": [
        "Patch"
      ],
      "url": "http://www.securityfocus.com/bid/32207"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://www.securitytracker.com/id?1021159"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://www.ubuntu.com/usn/usn-672-1"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://www.vupen.com/english/advisories/2008/3085"
    },
    {
      "source": "cve@mitre.org",
      "url": "http://www.vupen.com/english/advisories/2009/0422"
    },
    {
      "source": "cve@mitre.org",
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/46462"
    },
    {
      "source": "cve@mitre.org",
      "url": "https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00332.html"
    },
    {
      "source": "cve@mitre.org",
      "url": "https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00348.html"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Exploit"
      ],
      "url": "http://lists.grok.org.uk/pipermail/full-disclosure/2008-November/065530.html"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.html"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://secunia.com/advisories/32663"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://secunia.com/advisories/32699"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://secunia.com/advisories/32765"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://secunia.com/advisories/32872"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://secunia.com/advisories/33016"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://secunia.com/advisories/33317"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://secunia.com/advisories/33937"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://security.gentoo.org/glsa/glsa-200812-21.xml"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://securityreason.com/securityalert/4579"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://sourceforge.net/project/shownotes.php?release_id=637952\u0026group_id=86638"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://support.apple.com/kb/HT3438"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://www.debian.org/security/2008/dsa-1680"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2008:229"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://www.securityfocus.com/archive/1/498169/100/0/threaded"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Patch"
      ],
      "url": "http://www.securityfocus.com/bid/32207"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://www.securitytracker.com/id?1021159"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://www.ubuntu.com/usn/usn-672-1"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://www.vupen.com/english/advisories/2008/3085"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "http://www.vupen.com/english/advisories/2009/0422"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/46462"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00332.html"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00348.html"
    }
  ],
  "sourceIdentifier": "cve@mitre.org",
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "description": [
        {
          "lang": "en",
          "value": "CWE-119"
        }
      ],
      "source": "nvd@nist.gov",
      "type": "Primary"
    }
  ]
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…