CVE-2005-1795: Input Validation
The filecopy function in misc.c in Clam AntiVirus (ClamAV) before 0.85, on Mac OS, allows remote attackers to execute arbitrary code via a virus in a filename that contains shell metacharacters, which are not properly handled when HFS permissions prevent the file from being deleted and ditto is invoked.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1795?
CVE-2005-1795 is classified as a high-severity vulnerability due to its potential for arbitrary code execution.
Who is affected by CVE-2005-1795?
CVE-2005-1795 affects users of Clam AntiVirus (ClamAV) before version 0.85 on Mac OS.
How do I fix CVE-2005-1795?
To mitigate CVE-2005-1795, upgrade Clam AntiVirus to version 0.85 or later.
What type of vulnerability is CVE-2005-1795?
CVE-2005-1795 is a remote code execution vulnerability caused by improper handling of filenames containing shell metacharacters.
Can CVE-2005-1795 be exploited remotely?
Yes, CVE-2005-1795 can be exploited remotely by an attacker sending a specially crafted virus in a filename.