Heap-based buffer overflow in the CAB unpacker in avast! Anti-Virus Managed Client before 4.7.700 allows user-assisted remote attackers to execute arbitrary code via a crafted CAB archive, resulting from an "integer cast around".
Link | Tags |
---|---|
http://marc.info/?l=full-disclosure&m=118000321419384&w=2 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/34477 | vdb entry |
http://www.securityfocus.com/archive/1/469469/100/0/threaded | mailing list |
http://secunia.com/advisories/25380 | third party advisory |
http://www.avast.com/eng/adnm-management-client-revision-history.html | |
http://osvdb.org/36523 | vdb entry |
http://www.securitytracker.com/id?1018108 | vdb entry |
http://www.securityfocus.com/bid/24132 | vdb entry patch |
http://www.vupen.com/english/advisories/2007/1935 | vdb entry |