First published: Fri Jun 01 2007(Updated: )
The file parsing engine in Avira Antivir Antivirus before 7.04.00.24 allows remote attackers to cause a denial of service (application crash) via a crafted UPX compressed file, which triggers a divide-by-zero error.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Avira Antivirus | <=7.04.00.23 | |
Avira AV Pack | <=7.03.00.08 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-2972 is classified as a medium severity vulnerability due to the potential denial of service it can cause.
To fix CVE-2007-2972, you should upgrade your Avira Antivir Antivirus software to version 7.04.00.24 or later.
CVE-2007-2972 affects Avira Antivir Antivirus before version 7.04.00.24 and Avira Av Pack before version 7.03.00.08.
CVE-2007-2972 allows remote attackers to perform a denial of service attack by exploiting a divide-by-zero error.
There are no specific workarounds for CVE-2007-2972; the recommended action is to update the software.