BitDefender 'pdf.xmd' Module PDF Parsing Remote Denial Of Service Vulnerability
BID:32396
Info
BitDefender 'pdf.xmd' Module PDF Parsing Remote Denial Of Service Vulnerability
| Bugtraq ID: | 32396 |
| Class: | Design Error |
| CVE: |
CVE-2008-5409 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 20 2008 12:00AM |
| Updated: | May 07 2015 05:21PM |
| Credit: | ProTeuS |
| Vulnerable: |
BullGuard BullGuard Internet Security 8.5 BitDefender Internet Security 0 BitDefender Free Edition 0 BitDefender AntiVirus 2009 BitDefender AntiVirus 0 602 Software Groupware Server 6.0.8 .1118 |
| Not Vulnerable: | |
Discussion
BitDefender 'pdf.xmd' Module PDF Parsing Remote Denial Of Service Vulnerability
BitDefender is prone to a remote denial-of-service vulnerability that occurs when a malicious PDF file is scanned using BitDefender's command-line scanner 'bdc.exe'.
Attackers can exploit this issue to deny service to legitimate users.
UPDATE (November 25, 2008): Further reports indicate that the vulnerable module 'pdf.xmd' is used in other applications, rendering them vulnerable as well.
BitDefender is prone to a remote denial-of-service vulnerability that occurs when a malicious PDF file is scanned using BitDefender's command-line scanner 'bdc.exe'.
Attackers can exploit this issue to deny service to legitimate users.
UPDATE (November 25, 2008): Further reports indicate that the vulnerable module 'pdf.xmd' is used in other applications, rendering them vulnerable as well.
Exploit / POC
BitDefender 'pdf.xmd' Module PDF Parsing Remote Denial Of Service Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
BitDefender 'pdf.xmd' Module PDF Parsing Remote Denial Of Service Vulnerability
Solution:
A vendor patch is available through automated update channels. Please contact the vendor for details.
Solution:
A vendor patch is available through automated update channels. Please contact the vendor for details.
References
BitDefender 'pdf.xmd' Module PDF Parsing Remote Denial Of Service Vulnerability
References:
References:
- BitDefender Homepage (BitDefender)
- BullGuard Internet Security Homepage (BullGuard)
- Groupware Server Antivirus Engine PDF Processing Memory Corruption (Secunia)