CVE-2005-2919Infinite Loop in Anti-virus Clamav

CWE-17CWE-3995 documents5 sources
Severity
5.0MEDIUMNVD
EPSS
2.9%
top 13.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 20
Latest updateMay 1

Description

libclamav/fsg.c in Clam AntiVirus (ClamAV) before 0.87 allows remote attackers to cause a denial of service (infinite loop) via a crafted FSG packed executable.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

Debianclamav/clamav< 0.87-1+3
NVDclam_anti-virus/clamav17 versions+16

Patches

🔴Vulnerability Details

3
GHSA
GHSA-x52f-pc67-39rq: libclamav/fsg2022-05-01
OSV
CVE-2005-2919: libclamav/fsg2005-09-20
CVEList
CVE-2005-2919: libclamav/fsg2005-09-20

📋Vendor Advisories

1
Debian
CVE-2005-2919: clamav - libclamav/fsg.c in Clam AntiVirus (ClamAV) before 0.87 allows remote attackers t...2005
CVE-2005-2919 — Infinite Loop in Clam Anti-virus Clamav | cvebase