CVE-2007-1673: High severity Amavis AMaViS vulnerability
unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1673?
CVE-2007-1673 is classified as a moderate severity vulnerability that can cause a denial of service through an infinite loop.
How do I fix CVE-2007-1673?
To fix CVE-2007-1673, update the affected software to versions that are beyond those specified in the vulnerability description.
Which software is affected by CVE-2007-1673?
CVE-2007-1673 affects AMaViS 2.4.1 and earlier, certain versions of Avast Antivirus, and several other antivirus products.
What kinds of attacks can exploit CVE-2007-1673?
An attacker can exploit CVE-2007-1673 by using a specially crafted ZOO archive that creates an infinite loop in the vulnerable software.
What are the consequences of CVE-2007-1673 being exploited?
Exploiting CVE-2007-1673 can lead to a denial of service, causing the affected application to become unresponsive.