PT-2005-4095 · Ahnlab · Myv3+2

Tan Chew Keong

·

Published

2005-10-23

·

Updated

2008-09-05

·

CVE-2005-3284

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions AhnLab V3 AntiVirus V3Pro versions prior to 6.0.0.488 AhnLab V3Net for Windows Server versions prior to 6.0.0.488 MyV3 (affected versions not specified)
Description The issue is related to multiple buffer overflows that can be triggered when scanning compressed files. This can be exploited by remote attackers to execute arbitrary code through crafted archives, including ALZ, UUE, or XXE archives.
Recommendations For AhnLab V3 AntiVirus V3Pro versions prior to 6.0.0.488, update to version 6.0.0.488 or later. For AhnLab V3Net for Windows Server versions prior to 6.0.0.488, update to version 6.0.0.488 or later. For MyV3, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-3284

Affected Products

Ahnlab V3 Antivirus V3Pro
Ahnlab V3Net For Windows Server
Myv3