Microsoft Antivirus Engine Integer Overflow Vulnerability
BID:22479
Info
Microsoft Antivirus Engine Integer Overflow Vulnerability
| Bugtraq ID: | 22479 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-5270 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 13 2007 12:00AM |
| Updated: | Feb 20 2007 11:36PM |
| Credit: | Neel Mehta and Alex Wheeler of ISS X-Force discovered this issue. |
| Vulnerable: |
Microsoft Windows Live OneCare 0 Microsoft Windows Defender x64 Edition 0 Microsoft Windows Defender 0 Microsoft Forefront Security for SharePoint Server 1.0 Microsoft Forefront Security for Exchange Server 1.0 Microsoft ForeFront 0 Microsoft Antigen 9.0 |
| Not Vulnerable: | |
Discussion
Microsoft Antivirus Engine Integer Overflow Vulnerability
Microsoft Antivirus Engine is prone to an integer-overflow vulnerability when the application processes maliciously crafted files.
This issue is currently being exploited via Portable Document Files (PDF), but other Microsoft applications are also reported vulnerable.
An attacker could exploit this issue by enticing a victim into receiving or opening a malicious Office file. If the vulnerability is successfully exploited, this could result in the execution of arbitrary code in the context of the currently logged-in user.
Microsoft Antivirus Engine is prone to an integer-overflow vulnerability when the application processes maliciously crafted files.
This issue is currently being exploited via Portable Document Files (PDF), but other Microsoft applications are also reported vulnerable.
An attacker could exploit this issue by enticing a victim into receiving or opening a malicious Office file. If the vulnerability is successfully exploited, this could result in the execution of arbitrary code in the context of the currently logged-in user.
Exploit / POC
Microsoft Antivirus Engine Integer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Solution / Fix
Microsoft Antivirus Engine Integer Overflow Vulnerability
Solution:
Microsoft has released automatic updates and an advisory for this issue; please see the reference section for more information.
Solution:
Microsoft has released automatic updates and an advisory for this issue; please see the reference section for more information.
References
Microsoft Antivirus Engine Integer Overflow Vulnerability
References:
References: