Local Privilege Escalation Vulnerability in ClamXAV by Canimaan Software
CVE-2026-105773
7.3HIGH
What is CVE-2026-105773?
ClamXAV versions 3.3 to 3.11 developed by Canimaan Software contains a local privilege escalation vulnerability in the Privileged Helper Tool. This flaw is triggered by a race condition coupled with inadequate file validation, potentially allowing a local attacker to execute arbitrary code with system privileges. A fix has been introduced in version 3.11.1 to address this critical issue.
Affected Version(s)
ClamXAV 3.3
ClamXAV 3.3 < 3.11.1
ClamXAV 3.11.1
