CVE-2005-0133: Medium severity clam anti-virus clamav vulnerability
Published Feb 6, 2005
·Updated
ClamAV 0.80 and earlier allows remote attackers to cause a denial of service (clamd daemon crash) via a ZIP file with malformed headers.
Affected Software
10 affected components
Clam Anti-Virus clamav=0.51
Clam Anti-Virus clamav=0.52
Clam Anti-Virus clamav=0.53
Clam Anti-Virus clamav=0.54
Clam Anti-Virus clamav=0.60
Clam Anti-Virus clamav=0.65
Clam Anti-Virus clamav=0.67
Clam Anti-Virus clamav=0.68
Clam Anti-Virus clamav=0.68.1
Clam Anti-Virus clamav=0.80
Remediation
Patch Available
Patch Available
Event History
Feb 6, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0133?
CVE-2005-0133 has a high severity rating as it allows remote attackers to crash the clamd daemon, resulting in a denial of service.
2
How do I fix CVE-2005-0133?
To fix CVE-2005-0133, it is recommended to upgrade to a version of ClamAV that is 0.81 or later.
3
Which versions of ClamAV are affected by CVE-2005-0133?
CVE-2005-0133 affects ClamAV versions 0.80, 0.68.1, 0.68, 0.67, 0.65, 0.60, 0.54, 0.53, 0.52, and 0.51.
4
What type of attack does CVE-2005-0133 exploit?
CVE-2005-0133 exploits vulnerabilities in the handling of malformed headers in ZIP files.
5
Is CVE-2005-0133 a local or remote vulnerability?
CVE-2005-0133 is a remote vulnerability that allows attackers to crash the ClamAV service over the network.