VDB
DEBIAN-CVE-2006-1989
DEBIAN-CVE-2006-1989
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Buffer overflow in the get_database function in the HTTP client in Freshclam in ClamAV 0.80 to 0.88.1 might allow remote web servers to execute arbitrary code via long HTTP headers.
Risk Scores
CVSS v4.0
9.300000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:14 | clamav | 0, 0, 0 |
| Debian:13 | clamav | 0, 0, 0 |
| Debian:12 | clamav | 0, 0, 0 |
| Debian:11 | clamav | 0, 0, 0 |
Timeline
- May 1, 2006 CVE Published
- Apr 28, 2026 CVE Updated