CVE Vulnerabilities

CVE-2007-4578

Published: Aug 28, 2007 | Modified: Oct 15, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Sophos Anti-Virus for Windows and for Unix/Linux before 2.48.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted UPX packed file, resulting from an integer cast around. NOTE: as of 20070828, the vendor says this is a DoS and the researcher says this allows code execution, but the researcher is reliable.

Affected Software

Name Vendor Start Version End Version
Anti-virus Sophos 3.4.6 (including) 3.4.6 (including)
Anti-virus Sophos 3.78 (including) 3.78 (including)
Anti-virus Sophos 3.78d (including) 3.78d (including)
Anti-virus Sophos 3.79 (including) 3.79 (including)
Anti-virus Sophos 3.80 (including) 3.80 (including)
Anti-virus Sophos 3.81 (including) 3.81 (including)
Anti-virus Sophos 3.82 (including) 3.82 (including)
Anti-virus Sophos 3.83 (including) 3.83 (including)
Anti-virus Sophos 3.84 (including) 3.84 (including)
Anti-virus Sophos 3.85 (including) 3.85 (including)
Anti-virus Sophos 3.86 (including) 3.86 (including)
Anti-virus Sophos 3.90 (including) 3.90 (including)
Anti-virus Sophos 3.91 (including) 3.91 (including)
Anti-virus Sophos 3.95 (including) 3.95 (including)
Anti-virus Sophos 3.96.0 (including) 3.96.0 (including)
Anti-virus Sophos 4.03 (including) 4.03 (including)
Anti-virus Sophos 4.04 (including) 4.04 (including)
Anti-virus Sophos 4.05 (including) 4.05 (including)
Anti-virus Sophos 4.5.3 (including) 4.5.3 (including)
Anti-virus Sophos 4.5.4 (including) 4.5.4 (including)
Anti-virus Sophos 4.5.11 (including) 4.5.11 (including)
Anti-virus Sophos 4.5.12 (including) 4.5.12 (including)
Anti-virus Sophos 4.7.1 (including) 4.7.1 (including)
Anti-virus Sophos 4.7.2 (including) 4.7.2 (including)
Anti-virus Sophos 5.0.1 (including) 5.0.1 (including)
Anti-virus Sophos 5.0.2 (including) 5.0.2 (including)
Anti-virus Sophos 5.0.4 (including) 5.0.4 (including)
Anti-virus Sophos 5.0.9 (including) 5.0.9 (including)
Anti-virus Sophos 5.1 (including) 5.1 (including)
Anti-virus Sophos 5.2 (including) 5.2 (including)
Anti-virus Sophos 5.2.1 (including) 5.2.1 (including)
Anti-virus Sophos 6.5 (including) 6.5 (including)
Scanning_engine Sophos 2.30.4 (including) 2.30.4 (including)
Scanning_engine Sophos 2.40.2 (including) 2.40.2 (including)
Small_business_suite Sophos 4.04 (including) 4.04 (including)
Small_business_suite Sophos 4.05 (including) 4.05 (including)

References