CVE-2007-2535: High severity WinAce WinAce vulnerability
Published May 9, 2007
·Updated
WinAce allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.
Affected Software
3 affected components
WinAce WinAce=2.5
WinAce WinAce=2.6.0.5
WinAce WinAce=2.60
Event History
May 9, 2007
CVE Published
01:19 AM
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2535?
CVE-2007-2535 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2007-2535?
To fix CVE-2007-2535, upgrade to a patched version of WinAce that addresses this vulnerability.
3
What versions of WinAce are affected by CVE-2007-2535?
CVE-2007-2535 affects WinAce versions 2.5, 2.6.0.5, and 2.60.
4
What type of vulnerability is CVE-2007-2535?
CVE-2007-2535 is a vulnerability that allows remote attackers to cause an infinite loop leading to denial of service.
5
Are there any workaround solutions for CVE-2007-2535?
Currently, the primary workaround for CVE-2007-2535 is to avoid opening ZOO archives from untrusted sources.