A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a heap buffer overflow read. An attacker could exploit this vulnerability by sending a crafted ARJ file to an affected device. An exploit could allow the attacker to cause the ClamAV scanning process crash, resulting in a denial of service condition.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2020-05-13T02:20:13.063319Z

Updated: 2024-09-16T19:31:08.444Z

Reserved: 2019-12-12T00:00:00

Link: CVE-2020-3327

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-05-13T03:15:11.140

Modified: 2023-11-07T03:22:36.483

Link: CVE-2020-3327

cve-icon Redhat

No data.