Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Re: n.runs-SA-2007.027 - Sophos Antivirus UPX parsing Arbitrary CodeExecution Advisory

From: 3APA3A <3APA3A(at)SECURITY.NNOV.RU>
Date: Mon Aug 27 2007 - 12:33:56 EDT


Dear security@nruns.com,

Either Subject "UPX parsing Arbitrary CodeExecution" or vulnerability description "Infinite Loop in UPX packed files parsing" are wrong. Can you provide more detailed information please? It's not clear, how infinite loop can lead to remote code execution.

--Friday, August 24, 2007, 11:15:01 PM, you wrote to bugtraq@securityfocus.com:

snc> Description:

snc> A remotely exploitable vulnerability has been found in the file parsing snc> engine.

snc> In detail, the following flaw was determined:

snc> - Infinite Loop in UPX packed files parsing

snc> Impact:

snc> This problem can lead to remote denial of service or arbitrary code
snc> execution if an attacker carefully crafts a file that exploits the
snc> aforementioned vulnerability. The vulnerability is present in Sophos
snc> Anti-virus software listed above on all platforms supported by the affected
snc> products prior to the engine Version 2.48.0. 
Do you need help?X

--

~/ZARAZA http://securityvulns.com/ Received on Mon Aug 27 16:24:52 2007

This archive was generated by hypermail 2.1.8 : Sun Oct 28 2007 - 06:13:40 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library