First published: Sun Mar 20 2005(Updated: )
Buffer overflow in McAfee Scan Engine 4320 with DAT version before 4436 allows remote attackers to execute arbitrary code via a malformed LHA file with a type 2 header file name field, a variant of CVE-2005-0643.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Antivirus Engine | =4.3.20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-0644 has a high severity rating due to its potential to allow remote code execution.
To fix CVE-2005-0644, update your McAfee Scan Engine to version 4.3.20 or later with DAT version 4436 or newer.
CVE-2005-0644 affects users of McAfee Antivirus Engine version 4.3.20 with DAT versions prior to 4436.
CVE-2005-0644 is a buffer overflow vulnerability caused by processing malformed LHA files.
Yes, CVE-2005-0644 can be exploited remotely if a user opens a malicious LHA file.