4.3
CVSSv2

CVE-2005-3501

Published: 05/11/2005 Updated: 14/07/2011
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The cabd_find function in cabd.c of the libmspack library (mspack) for Clam AntiVirus (ClamAV) prior to 0.87.1 allows remote malicious users to cause a denial of service (infinite loop) via a crafted CAB file that causes cabd_find to be called with a zero length.

Vulnerable Product Search on Vulmon Subscribe to Product

clamav clamav 0.14

clamav clamav 0.01

clamav clamav 0.21

clamav clamav 0.22

clamav clamav 0.15

clamav clamav 0.71

clamav clamav 0.72

clamav clamav 0.73

clamav clamav 0.74

clamav clamav 0.83

clamav clamav 0.84

clamav clamav 0.60p

clamav clamav 0.68

clamav clamav 0.67

clamav clamav 0.70

clamav clamav 0.54

clamav clamav 0.60

clamav clamav 0.52

clamav clamav 0.53

clamav clamav 0.80

clamav clamav 0.86.2

clamav clamav 0.86

clamav clamav

clamav clamav 0.3

clamav clamav 0.67-1

clamav clamav 0.10

clamav clamav 0.03

clamav clamav 0.13

clamav clamav 0.51

clamav clamav 0.24

clamav clamav 0.75.1

clamav clamav 0.81

clamav clamav 0.82

clamav clamav 0.85

clamav clamav 0.66

clamav clamav 0.65

clamav clamav 0.68.1

clamav clamav 0.05

clamav clamav 0.02

clamav clamav 0.20

clamav clamav 0.12

clamav clamav 0.23

clamav clamav 0.75

clamav clamav 0.8

clamav clamav 0.80_rc

clamav clamav 0.85.1

clamav clamav 0.86.1

Vendor Advisories

Several vulnerabilities have been discovered in Clam AntiVirus, the antivirus scanner for Unix, designed for integration with mail servers to perform attachment scanning The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2005-3239 The OLE2 unpacker allows remote attackers to cause a segmentation fault ...