Record summary

CVE-2006-4438 has a selected CVSS score of 6.4; EIP currently links 1 catalogued exploit.

Description

Heap-based buffer overflow in SpIDer for Dr.Web Scanner for Linux 4.33, and possibly earlier versions, allows remote attackers to execute arbitrary code via an LHA archive with an extended header that contains a long directory name.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBDr.Web AntiVirus 4.33 - LHA long Directory name Local OverflowExploitDB exploitby Guay-LerouxNot analyzed1 file
ExploitDB

PoC details

References

5