Description: Two vulnerabilities have been reported in Sophos Anti-Virus, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
1) An input validation error when processing UPX-compressed executables can be exploited to write one byte to an arbitrary location.
Successful exploitation may allow execution of arbitrary code.
2) An error when processing BZIP archives can be exploited to cause an infinite loop and e.g cause all the available disk space to be used for the engine's temporary files.
The vulnerabilities are reported in Sophos Anti-Virus with engine versions prior to 2.48.0.
Solution: Update to engine version 2.48.0 or later.
Provided and/or discovered by: Sergio Alvarez, n.runs AG
Changelog: 2007-09-03: Added CVE reference.
2007-09-04: Increased criticality and added "System access" impact based on updated information from n.runs AG and Sophos. Added links to n.runs AG.
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.