Secunia Logo
 
CVE Reference: CVE-2007-0445
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-0445

Description:
Heap-based buffer overflow in the arj.ppl module in the OnDemand Scanner in Kaspersky Anti-Virus, Anti-Virus for Workstations, and Anti-Virus for File Servers 6.0, and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows remote attackers to execute arbitrary code via crafted ARJ archives.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/33489

ST
  1017882
  1017883

SAID
  Secunia Advisory: SA24778

MISC
  http://www.zerodayinitiative.com/advisories/ZDI-07-013.html

CONFIRM
  http://www.kaspersky.com/technews?id=203038693
  http://www.kaspersky.com/technews?id=203038694

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/464878/100/0/threaded

BID
  23346


Return to the previous page.