Cisco Discloses Seven High-Severity Vulnerabilities in ClamAV
Cisco has disclosed seven high-severity vulnerabilities in ClamAV that could allow unauthenticated remote attackers to disrupt antivirus scanning by submitting specially crafted files.
The issues are detailed in the Cisco advisory titled 'cisco-sa-clamav-WuuvVd26,' published on August 7 and updated on August 10. Cisco stated that successful exploitation of these vulnerabilities can interrupt the ClamAV scanning process, leading to a denial-of-service condition.
The seven vulnerabilities stem from unsafe parsing of attacker-controlled content and affect different file types such as ZIP archives, PDFs, Mach-O files, and XAR-containing files.