2005年10月4日01:18星期二 [杀毒防黑]
刚刚从安全站点"FrSIRT"看到的消息....以下是原文: CVE Reference : GENERIC-MAP-NOMATCH * Technical Description * //漏洞描述 A critical vulnerability has been identified in various Kaspersky Anti-Virus products, which could be exploited by attackers or malware to execute arbitrary commands. This issue is due to a heap overflow error in the CAB file format parser that does not properly handle a specially crafted file containing a malformed header, which could be exploited by attackers to execute arbitrary commands and compromise a vulnerable system (e.g. by sending an email containing a malicious CAB file). //大意是程序对cab包文件处理的不严格,可能被执行恶意代码. * Affected Products * //受影响的版本 Kaspersky Anti-Virus 4.x * Solution * //暂无补丁 The FrSIRT is not aware of any official supplied patch for this issue.
|
![]() | 本文永久地址 http://www.cemsg.com/p/20051004.php |
![]() |

上一篇 汗!赛门铁克又暴严重漏洞,最近杀软很受伤


