CVE-2007-6060: Input Validation
AhnLab Antivirus 3 Internet Security 2008 Platinum appends data to a filename string at a location indicated by the "Filename length" field in a ZIP header, which allows remote attackers to cause a denial of service (machine crash) and possibly execute arbitrary code via a ZIP file in which this field's value is larger than the actual number of bytes in the filename.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-6060?
The severity of CVE-2007-6060 is classified as high due to its potential to cause denial of service and arbitrary code execution.
How do I fix CVE-2007-6060?
To fix CVE-2007-6060, you should update AhnLab V3 Internet Security to the latest version that addresses this vulnerability.
What type of attack does CVE-2007-6060 enable?
CVE-2007-6060 enables remote attackers to cause a denial of service by manipulating ZIP files.
Which software is affected by CVE-2007-6060?
CVE-2007-6060 affects AhnLab V3 Internet Security 2008 Platinum.
Can CVE-2007-6060 lead to code execution?
Yes, CVE-2007-6060 can potentially allow remote attackers to execute arbitrary code.