VYPR
Unrated severityNVD Advisory· Published May 27, 2005· Updated Jun 16, 2026

CVE-2005-1795

CVE-2005-1795

Description

The filecopy function in misc.c in Clam AntiVirus (ClamAV) before 0.85, on Mac OS, allows remote attackers to execute arbitrary code via a virus in a filename that contains shell metacharacters, which are not properly handled when HFS permissions prevent the file from being deleted and ditto is invoked.

Affected products

2
  • ClamAV/Clamav2 versions
    cpe:2.3:a:clam_anti-virus:clamav:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:clam_anti-virus:clamav:*:*:*:*:*:*:*:*range: <=0.84
    • (no CPE)range: <0.85

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.