CVE-2008-6846: Buffer Overflow
Published Jul 2, 2009
·Updated
Multiple stack-based buffer overflows in avast! Linux Home Edition 1.0.5, 1.0.5-1, and 1.0.8 allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via a malformed (1) ISO or (2) RPM file.
Affected Software
3 affected components
Avast Avast Antivirus=1.0.5
Avast Avast Antivirus=1.0.5-1
Avast Avast Antivirus=1.0.8
Event History
Jul 2, 2009
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-6846?
CVE-2008-6846 has a high severity due to its potential for denial of service and execution of arbitrary code.
2
How do I fix CVE-2008-6846?
To fix CVE-2008-6846, update to a patched version of Avast Antivirus, specifically any version later than 1.0.8.
3
What types of files can exploit CVE-2008-6846?
CVE-2008-6846 can be exploited using malformed ISO or RPM files.
4
What are the affected versions of Avast Antivirus for CVE-2008-6846?
The affected versions for CVE-2008-6846 are 1.0.5, 1.0.5-1, and 1.0.8 of Avast Antivirus.
5
Can CVE-2008-6846 lead to remote code execution?
Yes, CVE-2008-6846 can allow attackers to execute arbitrary code remotely.