Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the Sophos Antivirus Library, as used by Sophos Antivirus, PureMessage, MailMonitor, and other products, allows remote attackers to execute arbitrary code via a Visio file with a crafted sub record length.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sophos病毒库Visio扫描远程堆溢出漏洞
Vulnerability Description
Sophos Anti-Virus是英国Sophos公司的一套适用于多种操作系统的反病毒软件。该软件可实时侦测和清除病毒、间谍软件、木马和蠕虫,确保台式机和笔记本电脑的全面网络保护。 Sophos病毒库支持对文件格式进行病毒分析。在分析Visio文件时Sophos存在堆溢出漏洞,允许攻击者完全控制受保护的系统。攻击者可以通过常见的协议(如SMTP、SMB、HTTP、FTP等)无需用户交互或认证便远程利用这个漏洞。
CVSS Information
N/A
Vulnerability Type
N/A