cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-20792,https://securityvulnerability.io/vulnerability/CVE-2022-20792,Heap Buffer Overflow in ClamAV Affects Local Users,"A vulnerability exists in the regex module used by the Clam AntiVirus signature database load module, allowing an authenticated local attacker to potentially crash the service and execute arbitrary code. This arises from improper bounds checking leading to a multi-byte heap buffer overflow. By placing a maliciously crafted CDB signature database file in the ClamAV database directory, an attacker can exploit the flaw, potentially gaining the ability to run code as the clamav user, threatening system integrity.",Cisco,Clam Antivirus (clamav),7.8,HIGH,0.0007300000288523734,false,,false,false,false,,,false,false,,2022-05-04T00:00:00.000Z,0