6.4
CVSSv2

CVE-2006-4438

Published: 20/09/2006 Updated: 08/03/2011
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

Heap-based buffer overflow in SpIDer for Dr.Web Scanner for Linux 4.33, and possibly earlier versions, allows remote malicious users to execute arbitrary code via an LHA archive with an extended header that contains a long directory name.

Vulnerable Product Search on Vulmon Subscribe to Product

doctor web ltd dr.web

Exploits

/******************************************************************** stetoscopec: DrWeb 433 antivirus LHA directory name heap overflow for linux - Howto: Find a valid GOT entry to hijack with objdump -R /opt/drweb/drweb I guess that you can use the address of free(), but my exploit uses the address of realpath() There was a NULL byte ...