A vulnerability in the PDF scanning processes of ClamAV could allow an unauthenticated, remote attacker to cause a buffer overflow condition, cause a denial of service (DoS) condition, or execute arbitrary code on an affected device. This vulnerability exists because memory buffers are allocated incorrectly when PDF files are processed. An attacker could exploit this vulnerability by submitting a crafted PDF file to be scanned by ClamAV on an affected device. A successful exploit could allow the attacker to trigger a buffer overflow, likely resulting in the termination of the ClamAV scanning process and a DoS condition on the affected software. Although unproven, there is also a possibility that an attacker could leverage the buffer overflow to execute arbitrary code with the privileges of the ClamAV process.
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade clamav | Aug 8, 2025 | Jun 18, 2025 |
| Amazon_linux_2023 | — | Upgrade clamav1.4Upgrade clamav1.4-lib-debuginfoUpgrade clamav1.4-dataUpgrade clamav1.4-develUpgrade clamav1.4-libUpgrade clamav1.4-freshclamUpgrade clamd1.4-debuginfoUpgrade clamd1.4Upgrade clamav1.4-debugsourceUpgrade clamav1.4-freshclam-debuginfoUpgrade clamav1.4-milter-debuginfoUpgrade clamav1.4-debuginfoUpgrade clamav1.4-docUpgrade clamav1.4-filesystemUpgrade clamav1.4-milter | Jul 11, 2025 | Jun 18, 2025 |
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | Jun 18, 2025 |
| Debian | — | Upgrade clamav | Jun 20, 2025 | Jun 18, 2025 |
| Freebsd | — | Upgrade clamav | Jun 22, 2025 | Jun 20, 2025 |
| Suse | — | Upgrade libclamav12Upgrade clamav-milterUpgrade clamavUpgrade libfreshclam3Upgrade libclammspack0Upgrade clamav-develUpgrade clamav-docs-html | Jun 27, 2025 | Jun 18, 2025 |
| Ubuntu | — | Upgrade clamav (Ubuntu Pro)Upgrade clamav | Jul 3, 2025 | Jun 18, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub