Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple Sophos Anti-Virus products, including Anti-Virus for Windows 5.x before 5.2.1 and 4.x before 4.05, when cabinet file inspection is enabled, allows remote attackers to execute arbitrary code via a CAB file with "invalid folder count values," which leads to heap corruption.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sophos Anti-Virus CAB文件扫描 堆溢出漏洞
Vulnerability Description
Sophos Anti-Virus是英国Sophos公司的一套适用于多种操作系统的反病毒软件。该软件可实时侦测和清除病毒、间谍软件、木马和蠕虫,确保台式机和笔记本电脑的全面网络保护。 Sophos AntiVirus在解压CAB头中包含有无效文件夹计数值的Microsoft Cabinet文件时存在堆溢出漏洞。如果启用了cabinet文件检查的话,则扫描到上述文件就会导致代码执行。
CVSS Information
N/A
Vulnerability Type
N/A