CVE-2026-20345
Last modified
CVE-2026-20345 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. A vulnerability in the GPT file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This vulnerability is due to improper handling of an endian conversion operation, which may result in an out-of-bounds buffer write. An attacker could exploit this vulnerability by submitting a crafted GPT file to be scanned by ClamAV on an affected device. EPSS estimates a 0.33% chance of exploitation in the next 30 days.
Description
A vulnerability in the GPT file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This vulnerability is due to improper handling of an endian conversion operation, which may result in an out-of-bounds buffer write. An attacker could exploit this vulnerability by submitting a crafted GPT file to be scanned by ClamAV on an affected device. A successful exploit could allow the attacker to cause the ClamAV scanning process to terminate, resulting in a DoS condition on the affected software.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Cisco Secure Endpoint | 1.12.3; 1.8.0; 1.11.1; 1.12.4; 1.10.0; 1.12.0; 1.8.1; 1.10.1; 1.10.2; 1.12.2; 1.6.0; 1.9.0; 1.7.0; 1.12.1; 1.12.6; 1.8.4; 1.11.0; 1.9.1; 1.12.5; 2.0.2; 1.1.0; 1.14.0; 2.4.0; 1.15.2; 1.16.0; 1.21.0; 1.22.2; 1.24.5; 1.19.0 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-20345?
How severe is CVE-2026-20345?
How do I fix CVE-2026-20345?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-2032Malicious scripts that interrupt new tab page loading could …4.3
- CVE-2026-2033MLflow Tracking Server Artifact Handler Directory Traversal …8.1
- CVE-2026-20337A vulnerability in the zip archive parser of ClamAV could al…7.5
- CVE-2026-20338A vulnerability in the zip archive parser of ClamAV could al…7.5
- CVE-2026-20339A vulnerability in the PESpin file format parser of ClamAV c…7.5
- CVE-2026-2034Sante DICOM Viewer Pro DCM File Parsing Buffer Overflow Remo…7.8
- CVE-2026-20346A vulnerability in the PDF file format parser of ClamAV coul…7.5
- CVE-2026-20347A vulnerability in the Mach-O file format parser of ClamAV c…7.5
- CVE-2026-20348A vulnerability in the XAR file format parser of ClamAV coul…7.5
- CVE-2026-20349A vulnerability in the Remote Access SSL VPN service for Cis…8.6
- CVE-2026-2035Deciso OPNsense diag_backup.php filename Command Injection R…6.8
- CVE-2026-2036GFI Archiver MArc.Store Deserialization of Untrusted Data Re…8.8
Are you affected by CVE-2026-20345?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
