OSV-2022-347
Dashboard / Vulnerabilities / OSV-2022-347
OSV-2022-347
Published: 15 Apr 2022Last Modified: 24 Feb 2023
Summary: Heap-buffer-overflow in cli_bcomp_freemeta
Details: OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=46687 ``` Crash type: Heap-buffer-overflow READ 8 Crash state: cli_bcomp_freemeta cli_bcomp_addpatt readdb_parse_ldb_subsignature ```
Affected packages
Package
Name: clamav
Purl: pkg:generic/clamav
Affected ranges
Type: GIT
Events:
Introduced- 0037f5825b0b17a789c7eb29c9cb9a2d39c452bc
Affected versions
clamav-0.105.0
clamav-0.105.0-rc
clamav-0.105.0-rc2
clamav-0.105.1
clamav-0.105.2
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
