FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

clamav -- zip handling DoS vulnerability

Affected packages
clamav < 0.81
clamav-devel < 20050408

Details

VuXML ID 70b62f5e-9e2e-11d9-a256-0001020eed82
Discovery 2005-01-27
Entry 2005-03-26
Modified 2005-04-09

The clamav daemon is vulnerable to a DoS vulnerability due to insufficient handling of malformed zip files which can crash the clamav daemon.

References

Bugtraq ID 12408
CVE Name CVE-2005-0133
URL http://sourceforge.net/project/shownotes.php?release_id=300116