AhnLab V3 Products ZIP File Remote Memory Corruption Vulnerability
BID:26473
Info
AhnLab V3 Products ZIP File Remote Memory Corruption Vulnerability
| Bugtraq ID: | 26473 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2007-6060 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 16 2007 12:00AM |
| Updated: | Dec 18 2007 08:05PM |
| Credit: | Sowhat of Nevis Labs disclosed this issue. |
| Vulnerable: |
Ahnlab V3Pro 2004 6.0 .0.488 Ahnlab V3Pro 2004 6.0 .0.457 Ahnlab V3Pro 2004 6.0 .0.383 Ahnlab V3 Internet Security 2007 0 Ahnlab V3 Engine 0 |
| Not Vulnerable: |
Ahnlab V3 Engine 2007.11.08.00 |
Discussion
AhnLab V3 Products ZIP File Remote Memory Corruption Vulnerability
AhnLab V3 Pro 2004 and V3 Internet Security 2007 products are prone to a remote memory-corruption vulnerability.
Successfully exploiting this issue allows remote attackers to crash affected computers and possibly to execute code, but this has not been confirmed.
AhnLab V3 Pro 2004 and V3 Internet Security 2007 products are prone to a remote memory-corruption vulnerability.
Successfully exploiting this issue allows remote attackers to crash affected computers and possibly to execute code, but this has not been confirmed.
Exploit / POC
AhnLab V3 Products ZIP File Remote Memory Corruption Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
AhnLab V3 Products ZIP File Remote Memory Corruption Vulnerability
Solution:
The vendor has released an advisory along with fixes to address this issue. The vendor advises customers to use the software's 'Smart Update' feature to ensure that the latest engine updates are applied. Please see the references for more information.
Solution:
The vendor has released an advisory along with fixes to address this issue. The vendor advises customers to use the software's 'Smart Update' feature to ensure that the latest engine updates are applied. Please see the references for more information.
References
AhnLab V3 Products ZIP File Remote Memory Corruption Vulnerability
References:
References: