Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A VMSF_DELTA memory corruption was discovered in unrar before 5.5.5, as used in Sophos Anti-Virus Threat Detection Engine before 3.37.2 and other products, that can lead to arbitrary code execution. An integer overflow can be caused in DataSize+CurChannel. The result is a negative value of the "DestPos" variable, which allows the attacker to write out of bounds when setting Mem[DestPos].
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sophos Anti-Virus Threat Detection Engine unrar 安全漏洞
Vulnerability Description
Sophos Anti-Virus Threat Detection Engine是英国Sophos公司的一套适用于多种操作系统的反病毒引擎,它可实时侦测和清除病毒、间谍软件、木马和蠕虫,确保台式机和笔记本电脑的全面网络保护。unrar是其中的一个命令行文档解压程序。 Sophos Anti-Virus Threat Detection Engine 3.37.2之前的版本中unrar 5.5.5之前的版本中存在内存损坏漏洞。攻击者可利用该漏洞执行任意代码,造成越边界写入。
CVSS Information
N/A
Vulnerability Type
N/A