---
cve: "CVE-2008-1100"
severity: "LOW"
cvss: 3.1
epss: "10.9%"
vendor: "n/a"
kev: false
exploited: false
published: "2008-04-14 16:05:00"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-11T14:38:01+02:00"
---

# CVE-2008-1100

> 3.1 LOW

## Beschreibung

Buffer overflow in the cli_scanpe function in libclamav (libclamav/pe.c) for ClamAV 0.92 and 0.92.1 allows remote attackers to execute arbitrary code via a crafted Upack PE file.

## Referenzen

- <http://www.mandriva.com/security/advisories?name=MDVSA-2008:088>
- <https://www.redhat.com/archives/fedora-package-announce/2008-May/msg00249.html>
- <http://secunia.com/advisories/29000>
- <http://security.gentoo.org/glsa/glsa-200805-19.xml>
- <http://lists.apple.com/archives/security-announce//2008/Sep/msg00005.html>
- <http://secunia.com/advisories/29891>
- <http://www.us-cert.gov/cas/techalerts/TA08-260A.html>
- <http://secunia.com/secunia_research/2008-11/advisory/>
- <http://www.securityfocus.com/bid/28784>
- <http://www.vupen.com/english/advisories/2008/2584>
- <http://secunia.com/advisories/31882>
- <http://secunia.com/advisories/29975>
- <http://secunia.com/advisories/29863>
- <http://secunia.com/advisories/30328>
- <http://www.securityfocus.com/bid/28756>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2008-1100) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
