Bleepingcomputer Cisco ClamAV Vulnerabilities Allow Remote DoS Attacks
Article Content
- •Cisco disclosed seven high-severity vulnerabilities in ClamAV, allowing remote DoS attacks.
- •Proof-of-concept exploit code is publicly available, raising the risk of exploitation.
- •Patches have been released, but the Secure Endpoint Connector remains unpatched.
Cisco disclosed multiple high-severity vulnerabilities in ClamAV, tracked as CVE-2026-20337, CVE-2026-20338, CVE-2026-20339, CVE-2026-20345, CVE-2026-20346, CVE-2026-20347, and CVE-2026-20348. These flaws allow unauthenticated remote attackers to crash the antivirus scanning process via specially crafted ZIP and PDF files. The vulnerabilities were found in the ZIP archive parser and are particularly impactful on Windows systems. Proof-of-concept exploit code is publicly available, increasing the risk of imminent attacks. Cisco has released patches for the vulnerabilities, but a patched version of the Secure Endpoint Connector is still pending. Administrators are advised to apply the available security updates promptly to mitigate risks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (13)
Following this threat?
Track Cisco and CVE-2025-8088 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Path Traversal Vulnerability in WinRAR Exploited by RomCom Group CVE-2025-8088 is a path traversal vulnerability in WinRAR versions up to 7.12, allowing attackers to exploit alternate data streams (ADSes) in RAR files to extract malicious payloads to sensitive system locations. Exploitation began in the wild on July 18, 2025, with attackers linked to the Russia-aligned RomCom…
Critical Vulnerabilities in ClamAV Affecting Multiple File Parsers SUSE has issued important security advisories for ClamAV, addressing multiple denial of service vulnerabilities. The vulnerabilities, identified as CVE-2026-20213 through CVE-2026-20217 and CVE-2026-20337 through CVE-2026-20347, allow unauthenticated remote attackers to exploit flaws in various file format parsers…