libclamav/message.c in ClamAV 0.99.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted e-mail message.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-6418.json"