Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: Advisory - Clam AntiVirus RAR File Handling Denial Of Service Vulnerability. Jul 11 2007 03:32PM
Noam Rathaus (noamr beyondsecurity com)
Hi,

The vulnerability also affects unrar (3.70 beta 3 freeware by Alexander
Roshal), as it tries to read a negative location from a pointer reference in
the SET_VALUE(false,Data,Addr-Offset) function (found in rarvm.cpp).

The values of Addr is 1666528 while Offset is 4546004 which of course resu...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus