Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2006-6458
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-6458

Description:
The Trend Micro scan engine before 8.320 for Windows and before 8.150 on HP-UX and AIX, as used in Trend Micro PC Cillin - Internet Security 2006, Office Scan 7.3, and Server Protect 5.58, allows remote attackers to cause a denial of service (CPU consumption and system hang) via a malformed RAR archive with an Archive Header section with the head_size and pack_size fields set to zero, which triggers an infinite loop.

CVE Status:
Candidate

References:

SAID
  Secunia Advisory: SA23321

IDEFENSE
  http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=439

BID
  21509


Return to the previous page.