CVE-2005-0133
UnknownEPSS 2.55%
Last modified
CVE-2005-0133 is a vulnerability of currently unknown severity. ClamAV 0.80 and earlier allows remote attackers to cause a denial of service (clamd daemon crash) via a ZIP file with malformed headers.. EPSS estimates a 2.55% chance of exploitation in the next 30 days.
Description
ClamAV 0.80 and earlier allows remote attackers to cause a denial of service (clamd daemon crash) via a ZIP file with malformed headers.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Clam Anti-Virus | Clamav | 0.51 |
| Clam Anti-Virus | Clamav | 0.52 |
| Clam Anti-Virus | Clamav | 0.53 |
| Clam Anti-Virus | Clamav | 0.54 |
| Clam Anti-Virus | Clamav | 0.60 |
| Clam Anti-Virus | Clamav | 0.65 |
| Clam Anti-Virus | Clamav | 0.67 |
| Clam Anti-Virus | Clamav | 0.68 |
| Clam Anti-Virus | Clamav | 0.68.1 |
| Clam Anti-Virus | Clamav | 0.80 |
References
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000928Patch, Vendor Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200501-46.xmlPatch, Vendor Advisory
- http://www.trustix.org/errata/2005/0003/Patch, Vendor Advisory
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000928Patch, Vendor Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200501-46.xmlPatch, Vendor Advisory
- http://www.trustix.org/errata/2005/0003/Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-0133?
ClamAV 0.80 and earlier allows remote attackers to cause a denial of service (clamd daemon crash) via a ZIP file with malformed headers.
How severe is CVE-2005-0133?
Severity scoring for CVE-2005-0133 is pending analysis. The EPSS model estimates a 2.55% probability of exploitation in the next 30 days.
How do I fix CVE-2005-0133?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-0126ColorSync on Mac OS X 10.3.7 and 10.3.8 allows attackers to …
- CVE-2005-0127Mail in Mac OS X 10.3.7, when generating a Message-ID header…
- CVE-2005-0128Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2005-0129The Quick Buttons feature in Konversation 0.15 allows remote…
- CVE-2005-0130Certain Perl scripts in Konversation 0.15 allow remote attac…
- CVE-2005-0131The Quick Connection dialog in Konversation 0.15 inadvertent…
- CVE-2005-0134The X server in SCO UnixWare 7.1.1, 7.1.3, and 7.1.4 does no…
- CVE-2005-0135The unw_unwind_to_user function in unwind.c on Itanium (ia64…
- CVE-2005-0136The Linux kernel before 2.6.11 on the Itanium IA64 platform …
- CVE-2005-0137Linux kernel 2.6 on Itanium (ia64) architectures allows loca…
- CVE-2005-0138rpc.mountd in SGI IRIX 6.5.25, 6.5.26, and 6.5.27 does not c…
- CVE-2005-0139Unknown vulnerability in rpc.mountd in SGI IRIX 6.5.25, 6.5.…
Are you affected by CVE-2005-0133?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
