20060420 Dr.Web 4.33 antivirus LHA long directory name heap overflowmailing list
http://lists.grok.org.uk/pipermail/full-disclosure/2006-October/049552.html CVE-2006-4438
Dr.Web AntiVirus 4.33 - LHA long Directory name Local Overflow
Record summary
CVE-2006-4438 has a selected CVSS score of 6.4; EIP currently links 1 catalogued exploit.
Description
Heap-based buffer overflow in SpIDer for Dr.Web Scanner for Linux 4.33, and possibly earlier versions, allows remote attackers to execute arbitrary code via an LHA archive with an extended header that contains a long directory name.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBDr.Web AntiVirus 4.33 - LHA long Directory name Local OverflowExploitDB exploitby Guay-LerouxNot analyzed1 file
References
522019Third-party advisory
http://secunia.com/advisories/22019 20119vdb entry
http://www.securityfocus.com/bid/20119 ADV-2006-3719vdb entry
http://www.vupen.com/english/advisories/2006/3719 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-4438