E-Mail:

NOD32 Anti-Virus ARJ Archive Handling Buffer Overflow

Secunia research has discovered a vulnerability in NOD32 Anti-Virus, which potentially can be exploited by malicious people to compromise a vulnerable system.

The vulnerability is caused due to an error in handling ARJ archives containing compressed files with overly long filename. This can be exploited to cause a heap-based buffer overflow when a specially crafted ARJ archive is scanned.

Successful exploitation may allow arbitrary code execution, but requires that archive scanning is enabled.

The vulnerability has been confirmed in NOD32 for Windows NT/2000/2003/XP Trial Version 2.5 (with nod32.002 version 1.033 build 1127). Other versions may also be affected.

Solution: Update to the latest version (nod32.002 version 1.034 build 1132) via online update.
Critical: Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch
Software: NOD32 for Windows NT/2000/XP 2.x

[Continue reading Secunia Advisory: SA16604]

What Do You Think?

 

Want to Start a Blog Here for Free?

Are you an expert in one subject or another? If your goal is to help others and dispense your hard-earned information back to the community, get involved in our community site today! You can write about anything - no matter the topic. Exceptional candidates will be offered the chance to contribute to (and generate revenue from) the main Lockergnome site. Join us today!

Favorite - Nov 21, 2008

Anyvite

Event - Nov 21, 2008

Today In History: Who Shot J.R.?

Diana's Tips - Nov 19, 2008

Add Tags In Word 2007

Gnewbie Gnook - Nov 18, 2008

How Can I Scan To PDF?

71 queries / 0.246 seconds.