Buffer overflow in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers to execute arbitrary code via an ACE archive containing a long filename.
References
Link | Resource |
---|---|
http://secunia.com/advisories/15776 | Patch Vendor Advisory |
http://secunia.com/secunia_research/2005-20/advisory/ | Patch Vendor Advisory |
http://securitytracker.com/id?1014544 | |
http://www.avast.com/eng/av4_revision_history.html |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2005-07-27T04:00:00
Updated: 2006-01-17T10:00:00
Reserved: 2005-07-27T00:00:00
Link: CVE-2005-2385
JSON object: View
NVD Information
Status : Analyzed
Published: 2005-07-27T04:00:00.000
Modified: 2008-09-05T20:51:37.317
Link: CVE-2005-2385
JSON object: View
Redhat Information
No data.
CWE