Sophos Anti-Virus before 4.02, 4.5.x before 4.5.9, 4.6.x before 4.6.9, and 5.x before 5.1.4 allow remote attackers to hide arbitrary files and data via crafted ARJ archives, which are not properly scanned.
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2006/0347 | permissions required vdb entry third party advisory |
http://www.sophos.com/support/knowledgebase/article/3803.html | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24345 | vdb entry third party advisory |