Clam AntiVirus (ClamAV) 0.88.6 allows remote attackers to cause a denial of service (stack overflow and application crash) by wrapping many layers of multipart/mixed content around a document, a different vulnerability than CVE-2006-5874 and CVE-2006-6406.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Clamav | — | Apply OS X security update 2008-002 | Dec 16, 2011 | Dec 11, 2006 |
| Debian | — | Upgrade clamav | Jul 30, 2024 | Dec 12, 2006 |
| Freebsd | — | Upgrade clamavUpgrade clamav-devel | Dec 10, 2025 | Dec 12, 2006 |
| Gentoo Linux | — | Upgrade app-antivirus/clamav. | Oct 30, 2017 | Dec 11, 2006 |
| Suse | — | Upgrade clamavUpgrade suse-release | Feb 17, 2015 | Dec 11, 2006 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub