Eset Software NOD32 Antivirus ARJ Archive Handling Remote Buffer Overflow Vulnerability
BID:14773
Info
Eset Software NOD32 Antivirus ARJ Archive Handling Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 14773 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 08 2005 12:00AM |
| Updated: | Sep 08 2005 12:00AM |
| Credit: | Discovery is credited to Tan Chew Keong, Secunia Research. |
| Vulnerable: |
Eset NOD32 Antivirus 2.5 |
| Not Vulnerable: | |
Discussion
Eset Software NOD32 Antivirus ARJ Archive Handling Remote Buffer Overflow Vulnerability
NOD32 Antivirus is affected by a remote buffer overflow vulnerability when handling ARJ archives.
An attacker may exploit this vulnerability to gain unauthorized remote access with SYSTEM privileges.
NOD32 for Windows version 2.5 running nod32.002 version 1.033 build 1127 is reportedly affected, however, it is possible that other versions are vulnerable as well.
NOD32 Antivirus is affected by a remote buffer overflow vulnerability when handling ARJ archives.
An attacker may exploit this vulnerability to gain unauthorized remote access with SYSTEM privileges.
NOD32 for Windows version 2.5 running nod32.002 version 1.033 build 1127 is reportedly affected, however, it is possible that other versions are vulnerable as well.
Exploit / POC
Eset Software NOD32 Antivirus ARJ Archive Handling Remote Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Eset Software NOD32 Antivirus ARJ Archive Handling Remote Buffer Overflow Vulnerability
Solution:
NOD32 running nod32.002 version 1.034 build 1132 is not vulnerable to this issue. Users are advised to upgrade through the online update functionality of the application.
Solution:
NOD32 running nod32.002 version 1.034 build 1132 is not vulnerable to this issue. Users are advised to upgrade through the online update functionality of the application.
References
Eset Software NOD32 Antivirus ARJ Archive Handling Remote Buffer Overflow Vulnerability
References:
References:
- Eset NOD32 Homepage (ESET)
- Secunia Research: NOD32 Anti-Virus ARJ Archive Handling Buffer Overflow (Secunia Research
)