CVE Vulnerabilities

CVE-2008-6904

Published: Aug 06, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Multiple unspecified vulnerabilities in Sophos SAVScan 4.33.0 for Linux, and possibly other products and versions, allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via crafted files that have been packed with (1) armadillo, (2) asprotect, or (3) asprotectSKE.

Affected Software

NameVendorStart VersionEnd Version
Anti-virusSophos4.7.18 (including)4.7.18 (including)
Anti-virusSophos4.9.18 (including)4.9.18 (including)
Anti-virusSophos4.37.0 (including)4.37.0 (including)
Anti-virusSophos6.4.5 (including)6.4.5 (including)
Anti-virusSophos7.0.5 (including)7.0.5 (including)
Anti-virus7.6.3Sophos**

References