Multiple Sophos Anti-Virus products, including Anti-Virus for Windows 5.x before 5.2.1 and 4.x before 4.05, when cabinet file inspection is enabled, allows remote attackers to execute arbitrary code via a CAB file with "invalid folder count values," which leads to heap corruption.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2006-05-10 10:02
Updated : 2025-04-03 01:03
NVD link : CVE-2006-0994
Mitre link : CVE-2006-0994
CVE.ORG link : CVE-2006-0994
JSON object : View
Products Affected
sophos
- sophos_anti-virus
CWE