Description
Heap-based buffer overflow in the Sophos Antivirus Library, as used by Sophos Antivirus, PureMessage, MailMonitor, and other products, allows remote attackers to execute arbitrary code via a Visio file with a crafted sub record length.
References (6)
Core 6
Core References
Vendor Advisory x_refsource_misc
http://www.rem0te.com/public/images/sophos.pdf
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/21608
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/16245/
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/14362
Various Sources x_refsource_confirm
http://www.sophos.com/support/knowledgebase/article/3409.html
Mailing List mailing-list
x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=112511873420953&w=2
Scores
EPSS
0.1203
EPSS Percentile
93.9%
Details
Status
published
Products (17)
sophos/sophos_anti-virus
3.4.6
sophos/sophos_anti-virus
3.78
sophos/sophos_anti-virus
3.78d
sophos/sophos_anti-virus
3.79
sophos/sophos_anti-virus
3.80
sophos/sophos_anti-virus
3.81
sophos/sophos_anti-virus
3.82
sophos/sophos_anti-virus
3.83
sophos/sophos_anti-virus
3.84
sophos/sophos_anti-virus
3.85
... and 7 more
Published
Sep 02, 2005
Tracked Since
Feb 18, 2026