CVE Vulnerabilities

CVE-2005-3501

Published: Nov 05, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The cabd_find function in cabd.c of the libmspack library (mspack) for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted CAB file that causes cabd_find to be called with a zero length.

Affected Software

NameVendorStart VersionEnd Version
ClamavClamav*0.87 (including)
ClamavClamav0.01 (including)0.01 (including)
ClamavClamav0.02 (including)0.02 (including)
ClamavClamav0.3 (including)0.3 (including)
ClamavClamav0.03 (including)0.03 (including)
ClamavClamav0.05 (including)0.05 (including)
ClamavClamav0.8-rc3 (including)0.8-rc3 (including)
ClamavClamav0.10 (including)0.10 (including)
ClamavClamav0.12 (including)0.12 (including)
ClamavClamav0.13 (including)0.13 (including)
ClamavClamav0.14 (including)0.14 (including)
ClamavClamav0.14-pre (including)0.14-pre (including)
ClamavClamav0.15 (including)0.15 (including)
ClamavClamav0.20 (including)0.20 (including)
ClamavClamav0.21 (including)0.21 (including)
ClamavClamav0.22 (including)0.22 (including)
ClamavClamav0.23 (including)0.23 (including)
ClamavClamav0.24 (including)0.24 (including)
ClamavClamav0.51 (including)0.51 (including)
ClamavClamav0.52 (including)0.52 (including)
ClamavClamav0.53 (including)0.53 (including)
ClamavClamav0.54 (including)0.54 (including)
ClamavClamav0.60 (including)0.60 (including)
ClamavClamav0.60p (including)0.60p (including)
ClamavClamav0.65 (including)0.65 (including)
ClamavClamav0.66 (including)0.66 (including)
ClamavClamav0.67 (including)0.67 (including)
ClamavClamav0.67-1 (including)0.67-1 (including)
ClamavClamav0.68 (including)0.68 (including)
ClamavClamav0.68.1 (including)0.68.1 (including)
ClamavClamav0.70 (including)0.70 (including)
ClamavClamav0.70-rc (including)0.70-rc (including)
ClamavClamav0.71 (including)0.71 (including)
ClamavClamav0.72 (including)0.72 (including)
ClamavClamav0.73 (including)0.73 (including)
ClamavClamav0.74 (including)0.74 (including)
ClamavClamav0.75 (including)0.75 (including)
ClamavClamav0.75.1 (including)0.75.1 (including)
ClamavClamav0.80 (including)0.80 (including)
ClamavClamav0.80-rc (including)0.80-rc (including)
ClamavClamav0.80-rc1 (including)0.80-rc1 (including)
ClamavClamav0.80-rc2 (including)0.80-rc2 (including)
ClamavClamav0.80-rc3 (including)0.80-rc3 (including)
ClamavClamav0.80-rc4 (including)0.80-rc4 (including)
ClamavClamav0.80_rc (including)0.80_rc (including)
ClamavClamav0.81 (including)0.81 (including)
ClamavClamav0.81-rc1 (including)0.81-rc1 (including)
ClamavClamav0.82 (including)0.82 (including)
ClamavClamav0.83 (including)0.83 (including)
ClamavClamav0.84 (including)0.84 (including)
ClamavClamav0.84-rc1 (including)0.84-rc1 (including)
ClamavClamav0.84-rc2 (including)0.84-rc2 (including)
ClamavClamav0.85 (including)0.85 (including)
ClamavClamav0.85.1 (including)0.85.1 (including)
ClamavClamav0.86 (including)0.86 (including)
ClamavClamav0.86-rc1 (including)0.86-rc1 (including)
ClamavClamav0.86.1 (including)0.86.1 (including)
ClamavClamav0.86.2 (including)0.86.2 (including)

References