CVE-2010-4260
EPSS 4.9%
Description
Multiple unspecified vulnerabilities in pdf.c in libclamav in ClamAV before 0.96.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document, aka (1) "bb #2358" and (2) "bb #2396."
How to fix CVE-2010-4260
To remediate CVE-2010-4260, upgrade the affected package to a fixed version below.
- Debian/clamav—upgrade to 0.96.5+dfsg-1 or later
Is CVE-2010-4260 being exploited?
Low — EPSS is 4.9%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 0.96.5+dfsg-1