Show filters
50 Total Results
Displaying 41-50 of 50
Sort by:
Attacker Value
Unknown

CVE-2005-3500

Disclosure Date: November 05, 2005 (last updated February 22, 2025)
The tnef_attachment function in tnef.c for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via a crafted value in a CAB file that causes ClamAV to repeatedly scan the same block.
0
Attacker Value
Unknown

CVE-2005-2920

Disclosure Date: September 20, 2005 (last updated February 22, 2025)
Buffer overflow in libclamav/upx.c in Clam AntiVirus (ClamAV) before 0.87 allows remote attackers to execute arbitrary code via a crafted UPX packed executable.
0
Attacker Value
Unknown

CVE-2005-2919

Disclosure Date: September 20, 2005 (last updated February 22, 2025)
libclamav/fsg.c in Clam AntiVirus (ClamAV) before 0.87 allows remote attackers to cause a denial of service (infinite loop) via a crafted FSG packed executable.
0
Attacker Value
Unknown

CVE-2005-2450

Disclosure Date: August 03, 2005 (last updated February 22, 2025)
Multiple integer overflows in the (1) TNEF, (2) CHM, or (3) FSG file format processors in libclamav for Clam AntiVirus (ClamAV) 0.86.1 and earlier allow remote attackers to gain privileges via a crafted e-mail message.
0
Attacker Value
Unknown

CVE-2005-1923

Disclosure Date: July 05, 2005 (last updated February 22, 2025)
The ENSURE_BITS macro in mszipd.c for Clam AntiVirus (ClamAV) 0.83, and other versions vefore 0.86, allows remote attackers to cause a denial of service (CPU consumption by infinite loop) via a cabinet (CAB) file with the cffile_FolderOffset field set to 0xff, which causes a zero-length read.
0
Attacker Value
Unknown

CVE-2005-1922

Disclosure Date: July 05, 2005 (last updated February 22, 2025)
The MS-Expand file handling in Clam AntiVirus (ClamAV) before 0.86 allows remote attackers to cause a denial of service (file descriptor and memory consumption) via a crafted file that causes repeated errors in the cli_msexpand function.
0
Attacker Value
Unknown

CVE-2005-2056

Disclosure Date: June 29, 2005 (last updated February 22, 2025)
The Quantum archive decompressor in Clam AntiVirus (ClamAV) before 0.86.1 allows remote attackers to cause a denial of service (application crash) via a crafted Quantum archive.
0
Attacker Value
Unknown

CVE-2005-1800

Disclosure Date: May 28, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in Jaws Glossary gadget 0.4 to 0.5.1 allows remote attackers to inject arbitrary web script or HTML via the term parameter in a view or ViewTerm action to index.php.
0
Attacker Value
Unknown

CVE-2005-0218

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
ClamAV 0.80 and earlier allows remote attackers to bypass virus scanning via a base64 encoded image in a data: (RFC 2397) URL.
0
Attacker Value
Unknown

CVE-2005-0133

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
ClamAV 0.80 and earlier allows remote attackers to cause a denial of service (clamd daemon crash) via a ZIP file with malformed headers.
0