Back to search
CVE-2007-4037
Published: Jul 27, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Guidance Software EnCase allows user-assisted attackers to trigger a buffer over-read and application crash via a malformed NTFS filesystem containing a modified FILE record with a certain large offset. NOTE: the vendor disputes the significance of this issue, asserting that relevant attackers typically do not corrupt a filesystem, and indicating that the relevant read operation can be disabled
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20070726 Re: Guidance Software response to iSEC report on EnCase
mailing-list
x_refsource_BUGTRAQ
20070726 Guidance Software response to iSEC report on EnCase
mailing-list
x_refsource_BUGTRAQ
20070802 RE: Re: Guidance Software response to iSEC report on EnCase
mailing-list
x_refsource_BUGTRAQ
20070727 Re: Guidance Software response to iSEC report on EnCase (fwd)
mailing-list
x_refsource_BUGTRAQ
25100
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now