Loading
Generated remediation guidance and an executive summary. No account required.
The ENSURE_BITS macro in mszipd.c for Clam AntiVirus (ClamAV) 0.83, and other versions vefore 0.86, allows remote attackers to cause a denial of service (CPU consumption by infinite loop) via a cabinet (CAB) file with the cffile_FolderOffset field set to 0xff, which causes a zero-length read.
Use Clam Anti-Virus vendor hub and Clamav product page to widen CVE-2005-1923 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2008-1100, CVE-2008-5050 and CVE-2008-1833 for nearby disclosures in the same product family.