CVE-2013-6497: Clamav

Low severity, CVSS 2.1. EPSS: 1.1% chance of exploitation in the next 30 days.

clamscan in ClamAV before 0.98.5, when using -a option, allows remote attackers to cause a denial of service (crash) as demonstrated by the jwplayer.js file.

Affected products

  • Clamav Clamav: up to and including 0.98.4

Published 2014-12-01. Last modified 2026-06-17.