First published: Wed May 09 2007(Updated: )
unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Barracuda Spam Firewall | =model_100 | |
Avast Antivirus | =4.7.1098 | |
Avast Antivirus | =4.6.652 | |
Avira Antivirus | =7.04.00.23 | |
Barracuda Spam Firewall | =model_300 | |
Avast Pro Antivirus | =4.7.827 | |
Avira Antivirus | =6.35.00.00 | |
Avast Pro Antivirus | =4.6.652 | |
Avira AV Pack | ||
Avast Pro Antivirus | =4.6.691 | |
Barracuda Spam Firewall | ||
Barracuda Spam Firewall | =model_900 | |
Panda Panda Antivirus and Firewall | =2007 | |
Avast Pro Antivirus | =4.7.1043 | |
Avira AV Pack | ||
Avira AV Pack | =7 | |
Avast Antivirus | =4.7.700 | |
Avast Antivirus | =4.6.394 | |
Avira AV Pack | <=7.3.0.5 | |
Avast Pro Antivirus | =4.6.665 | |
Barracuda Spam Firewall | =model_600 | |
Avast Pro Antivirus | =4.7.1043 | |
Avast Antivirus | <=4.7.980 | |
Barracuda Spam Firewall | =model_800 | |
Barracuda Spam Firewall | =model_500 | |
Avast Antivirus | =4.6.655 | |
Avast Antivirus | =4.7.827 | |
Barracuda Spam Firewall | =model_400 | |
Avast Pro Antivirus | =4.7.869 | |
PicoZip | ||
Avast Pro Antivirus | =4.7.827 | |
Avira AV Pack | =7 | |
Avast Antivirus | =4.7.1098 | |
Avast Pro Antivirus | =4.6.603 | |
WinAce | ||
Barracuda Spam Firewall | =model_200 | |
Avast Antivirus | =4.7.652 | |
Avast Pro Antivirus | =4.6 | |
AMaViS | <=2.4.1 | |
Avast Pro Antivirus | =4.7.1098 | |
Avast Antivirus | =4.7.869 | |
Avira Antivirus | ||
Avast Antivirus | =4.6.665 | |
Avast Pro Antivirus | =4.7.844 | |
Avast Antivirus | =4.0 | |
Avast Pro Antivirus | =4.7.844 | |
Avast Antivirus | =4.7.869 | |
Avira AV Pack | ||
Avast Pro Antivirus | =4.0 | |
Unzoo | =4.4 | |
Avast Antivirus | =4.7.1043 | |
Avast Antivirus | =4.6 | |
Avast Antivirus | =4.7.844 | |
Avast Antivirus | =4.7.1043 | |
Avast Antivirus | =4.7.844 | |
Panda Antivirus Pro | =2007 | |
Avast Antivirus | =4.7.827 | |
Avast Antivirus | =4.6.691 | |
Zoo Project Zoo | <=2.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1673 is classified as a moderate severity vulnerability that can cause a denial of service through an infinite loop.
To fix CVE-2007-1673, update the affected software to versions that are beyond those specified in the vulnerability description.
CVE-2007-1673 affects AMaViS 2.4.1 and earlier, certain versions of Avast Antivirus, and several other antivirus products.
An attacker can exploit CVE-2007-1673 by using a specially crafted ZOO archive that creates an infinite loop in the vulnerable software.
Exploiting CVE-2007-1673 can lead to a denial of service, causing the affected application to become unresponsive.