Back to search
CVE-2007-6060
Published: Nov 20, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
AhnLab Antivirus 3 Internet Security 2008 Platinum appends data to a filename string at a location indicated by the "Filename length" field in a ZIP header, which allows remote attackers to cause a denial of service (machine crash) and possibly execute arbitrary code via a ZIP file in which this field's value is larger than the actual number of bytes in the filename.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
1018977
vdb-entry
x_refsource_SECTRACK
27757
third-party-advisory
x_refsource_SECUNIA
ahnlab-antivirus-zip-code-execution(38514)
vdb-entry
x_refsource_XF
http://secway.org/advisory/AD20071116.txt
x_refsource_MISC
26473
vdb-entry
x_refsource_BID
42352
vdb-entry
x_refsource_OSVDB
20071116 AhnLab AntiVirus Remote Kernel Memory Corruption
mailing-list
x_refsource_BUGTRAQ
3382
third-party-advisory
x_refsource_SREASON
ADV-2007-3983
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now