5

CVE-2006-5645

Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11, when "Enabled scanning of archives" is set, allows remote attackers to cause a denial of service (infinite loop) via a malformed RAR archive with an Archive Header section with the head_size and pack_size fields set to zero.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sophos ≫ Anti-virus Version 4.04
Sophos ≫ Anti-virus Version 4.05
Sophos ≫ Anti-virus Version 4.5.3
Sophos ≫ Anti-virus Version 4.5.4
Sophos ≫ Anti-virus Version 4.5.11
Sophos ≫ Anti-virus Version 4.5.12
Sophos ≫ Anti-virus Version 4.7.1
Sophos ≫ Anti-virus Version 4.7.2
Sophos ≫ Anti-virus Version 5.0.1
Sophos ≫ Anti-virus Version 5.0.2
Sophos ≫ Anti-virus Version 5.0.4
Sophos ≫ Anti-virus Version 5.1
Sophos ≫ Anti-virus Version 5.2
Sophos ≫ Anti-virus Version 5.2.1
Sophos ≫ Anti-virus Version 6.0.4
Sophos ≫ Endpoint Security Version <= 6.04
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 17.51% 0.968
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://securitytracker.com/id?1017132
http://www.securityfocus.com/bid/20816
http://www.sophos.com/support/knowledgebase/article/7609.html
http://www.vupen.com/english/advisories/2006/4239
Vendor Advisory
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=439
http://secunia.com/advisories/22591
Vendor Advisory
http://www.securityfocus.com/archive/1/474683/100/0/threaded
http://www.securitytracker.com/id?1018450