Multiple Sophos Anti-Virus products, including Anti-Virus for Windows 5.x before 5.2.1 and 4.x before 4.05, when cabinet file inspection is enabled, allows remote attackers to execute arbitrary code via a CAB file with invalid folder count values, which leads to heap corruption.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sophos_anti-virus | Sophos | 4.00 (excluding) | 4.05 (excluding) |
Sophos_anti-virus | Sophos | 5.0.0 (including) | 5.2.1 (excluding) |