CVE-2006-5647
Sophos Anti-Virus and Endpoint Security < 6.0.5 - Remote Code Execution via Malformed CHM File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5647. PoCs published by Damian Put.
AI-analyzed exploit summary This exploit targets a memory corruption vulnerability in Sophos Antivirus by leveraging a malformed CHM file with an overly long chunk name length. The provided CHM file triggers the vulnerability when processed by the antivirus software.
Description
Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a malformed CHM file with a large name length in the CHM chunk header, aka "CHM name length memory consumption vulnerability."
Exploits (1)
This exploit targets a memory corruption vulnerability in Sophos Antivirus by leveraging a malformed CHM file with an overly long chunk name length. The provided CHM file triggers the vulnerability when processed by the antivirus software.