CVE-2006-4182

Publication date 16 October 2006

Last updated 17 July 2025


Ubuntu priority

Description

Integer overflow in ClamAV 0.88.1 and 0.88.4, and other versions before 0.88.5, allows remote attackers to cause a denial of service (scanning service crash) and execute arbitrary code via a crafted Portable Executable (PE) file that leads to a heap-based buffer overflow when less memory is allocated than expected.

Status

Package Ubuntu Release Status
clamav 7.04 feisty
Fixed 0.90.2-0ubuntu1.3
6.10 edgy
Fixed 0.88.4-1ubuntu2.1
6.06 LTS dapper
Fixed 0.88.2-1ubuntu1.3