Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Dr. Web Anti-Virus LHA Archive Heap Buffer-Overflow Vulnerability

Dr. Web Anti-Virus is prone to a heap buffer-overflow vulnerability because it fails to perform sufficient bounds checking on LHA archive data before copying it to a finite-sized buffer.

Exploiting this issue could lead to denial-of-service conditions and to the execution of arbitrary machine code in the context of the application.

Dr.Web Anti-Virus Version 4.33 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus