Home arrow US-CERT Computer Emergency Readiness Team arrow ClamAV PE Scanning Vulnerability

ClamAV PE Scanning Vulnerability

US-CERT is aware of a report of a buffer overflow vulnerability affecting ClamAV. This heap-based buffer overflow vulnerablity may allow an attacker to execute arbitrary code on an affected system.

US-CERT recommends that users do not scan PE files from untrusted sources.