Sophos Anti-Virus for Windows and for Unix/Linux before 2.48.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted UPX packed file, resulting from an integer cast around. NOTE: as of 20070828, the vendor says this is a DoS and the researcher says this allows code execution, but the researcher is reliable.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Anti-virus | Sophos | 3.4.6 (including) | 3.4.6 (including) |
Anti-virus | Sophos | 3.78 (including) | 3.78 (including) |
Anti-virus | Sophos | 3.78d (including) | 3.78d (including) |
Anti-virus | Sophos | 3.79 (including) | 3.79 (including) |
Anti-virus | Sophos | 3.80 (including) | 3.80 (including) |
Anti-virus | Sophos | 3.81 (including) | 3.81 (including) |
Anti-virus | Sophos | 3.82 (including) | 3.82 (including) |
Anti-virus | Sophos | 3.83 (including) | 3.83 (including) |
Anti-virus | Sophos | 3.84 (including) | 3.84 (including) |
Anti-virus | Sophos | 3.85 (including) | 3.85 (including) |
Anti-virus | Sophos | 3.86 (including) | 3.86 (including) |
Anti-virus | Sophos | 3.90 (including) | 3.90 (including) |
Anti-virus | Sophos | 3.91 (including) | 3.91 (including) |
Anti-virus | Sophos | 3.95 (including) | 3.95 (including) |
Anti-virus | Sophos | 3.96.0 (including) | 3.96.0 (including) |
Anti-virus | Sophos | 4.03 (including) | 4.03 (including) |
Anti-virus | Sophos | 4.04 (including) | 4.04 (including) |
Anti-virus | Sophos | 4.05 (including) | 4.05 (including) |
Anti-virus | Sophos | 4.5.3 (including) | 4.5.3 (including) |
Anti-virus | Sophos | 4.5.4 (including) | 4.5.4 (including) |
Anti-virus | Sophos | 4.5.11 (including) | 4.5.11 (including) |
Anti-virus | Sophos | 4.5.12 (including) | 4.5.12 (including) |
Anti-virus | Sophos | 4.7.1 (including) | 4.7.1 (including) |
Anti-virus | Sophos | 4.7.2 (including) | 4.7.2 (including) |
Anti-virus | Sophos | 5.0.1 (including) | 5.0.1 (including) |
Anti-virus | Sophos | 5.0.2 (including) | 5.0.2 (including) |
Anti-virus | Sophos | 5.0.4 (including) | 5.0.4 (including) |
Anti-virus | Sophos | 5.0.9 (including) | 5.0.9 (including) |
Anti-virus | Sophos | 5.1 (including) | 5.1 (including) |
Anti-virus | Sophos | 5.2 (including) | 5.2 (including) |
Anti-virus | Sophos | 5.2.1 (including) | 5.2.1 (including) |
Anti-virus | Sophos | 6.5 (including) | 6.5 (including) |
Scanning_engine | Sophos | 2.30.4 (including) | 2.30.4 (including) |
Scanning_engine | Sophos | 2.40.2 (including) | 2.40.2 (including) |
Small_business_suite | Sophos | 4.04 (including) | 4.04 (including) |
Small_business_suite | Sophos | 4.05 (including) | 4.05 (including) |