CVE-2007-2966: Buffer Overflow
Buffer overflow in the LHA decompression component in F-Secure anti-virus products for Microsoft Windows and Linux before 20070529 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted LHA archive, related to an integer wrap, a similar issue to CVE-2006-4335.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2966?
CVE-2007-2966 is classified as a critical vulnerability that allows remote attackers to execute arbitrary code.
How do I fix CVE-2007-2966?
To address CVE-2007-2966, update the F-Secure anti-virus software to the latest version provided by the vendor.
Which F-Secure products are affected by CVE-2007-2966?
CVE-2007-2966 affects various F-Secure anti-virus products for both Microsoft Windows and Linux, prior to specific versions noted.
What type of attack does CVE-2007-2966 facilitate?
CVE-2007-2966 facilitates buffer overflow attacks through crafted LHA archive files.
Can CVE-2007-2966 result in denial of service?
Yes, exploitation of CVE-2007-2966 can lead to denial of service, including application crashes.