A fuzzing test against ClamAV versions below 0.94 discovered that they suffer from a chm file parsing vulnerability which can possibly be exploited.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/69628/clamav-chm.txt
Source: https://packetstormsecurity.com/files/69628/clamav-chm.txt.html

