header-logo
Suggest Exploit
vendor:
Antivirus
by:
milw0rm.com
7,5
CVSS
HIGH
Denial of Service
20
CWE
Product Name: Antivirus
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2006

Multiple Vendor Antivirus RAR File Denial of Service Vulnerability

This vulnerability affects multiple antivirus vendors and allows attackers to cause a denial of service (DoS) condition by sending a specially crafted RAR file. The vulnerability is caused due to an error in the processing of RAR files, which can be exploited to cause a stack-based buffer overflow by sending a specially crafted RAR file. Successful exploitation may allow execution of arbitrary code, but is limited to denial of service attacks.

Mitigation:

Upgrade to the latest version of the affected software.
Source

Exploit-DB raw data:

Multiple Vendor Antivirus RAR File Denial of Service Vulnerability

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/2912.rar (12102006-sophos_intifiniti.rar)

# milw0rm.com [2006-12-10]