Kaspersky Anti-Virus Library CAB Record Remote Heap Overflow Vulnerability
BID:14998
Info
Kaspersky Anti-Virus Library CAB Record Remote Heap Overflow Vulnerability
| Bugtraq ID: | 14998 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 03 2005 12:00AM |
| Updated: | Oct 03 2005 12:00AM |
| Credit: | Discovery is credited to Alex Wheeler. |
| Vulnerable: |
Kaspersky Labs Personal Security Suite 1.1 Kaspersky Labs Antivirus Scanning Engine 5.0 Kaspersky Labs Anti-Virus Personal Pro 5.0 Kaspersky Labs Anti-Virus Personal 5.0 Kaspersky Labs Anti-Virus for Windows Workstations 5.0 Kaspersky Labs Anti-Virus for Windows File Servers 5.0 Kaspersky Anti-Virus 5.0.335 Kaspersky Anti-Virus 5.0.228 Kaspersky Anti-Virus 5.0.227 |
| Not Vulnerable: | |
Discussion
Kaspersky Anti-Virus Library CAB Record Remote Heap Overflow Vulnerability
The Kaspersky Anti-Virus library is prone to a remote heap overflow vulnerability. The vulnerability is exposed during analysis of .CAB files. This issue may potentially affect all Kaspersky products that include the library, including desktop, server, and gateway anti-virus products. This issue only affects Windows releases. Kaspersky Anti-Virus 4.5 releases are not affected by this issue.
Successful exploitation may result in system-level compromise of a computer hosting a vulnerable application.
The Kaspersky Anti-Virus library is prone to a remote heap overflow vulnerability. The vulnerability is exposed during analysis of .CAB files. This issue may potentially affect all Kaspersky products that include the library, including desktop, server, and gateway anti-virus products. This issue only affects Windows releases. Kaspersky Anti-Virus 4.5 releases are not affected by this issue.
Successful exploitation may result in system-level compromise of a computer hosting a vulnerable application.
Exploit / POC
Kaspersky Anti-Virus Library CAB Record Remote Heap Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Kaspersky Anti-Virus Library CAB Record Remote Heap Overflow Vulnerability
Solution:
The vendor has released patches to address this issue. Patches can be obtained through the products' Updater. Please see references for more information.
Solution:
The vendor has released patches to address this issue. Patches can be obtained through the products' Updater. Please see references for more information.
References
Kaspersky Anti-Virus Library CAB Record Remote Heap Overflow Vulnerability
References:
References:
- Kaspersky Anti-Virus for Windows - multiple patches (Kaspersky Labs)
- Kaspersky Antivirus Library Remote Heap Overflow (rem0te.com)
- Kaspersky Lab comments on a report regarding a vulnerability (Kaspersky)
- Kaspersky Products (Kaspersky)