CVE-2005-3500
EPSS 5.9%Published: 11/5/2005Modified: 4/28/2026
Also known as:DEBIAN-CVE-2005-3500
Description
The tnef_attachment function in tnef.c for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via a crafted value in a CAB file that causes ClamAV to repeatedly scan the same block.
Affected packages (1)
- Debian/clamavfrom 0, < 0.87.1-1