CVE-2007-4787

The virus detection engine in Sophos Anti-Virus before 2.49.0 does not properly process malformed (1) CAB, (2) LZH, and (3) RAR files with modified headers, which might allow remote attackers to bypass malware detection.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sophos:sophos_anti-virus:3.78:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.78d:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.86:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.90:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:4.5.12:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:4.5.3:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:5.1:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:5.2.0:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.81:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.82:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.83:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:4.5.11:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.96:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:4.04:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:6.0:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.91:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.80:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:5.2.1:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.79:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:4.7.2:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:4.7.1:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:6.5.8:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:4.05:*:*:*:*:*:*:*
cpe:2.3:a:sophos:scanning_engine:2.30.4:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.4.6:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.95:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:6.5:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:4.5.4:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:6.5.4_r2:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.84:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:3.85:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:7.0:*:*:*:*:*:*:*
cpe:2.3:a:sophos:sophos_anti-virus:5.0.4:*:*:*:*:*:*:*

Information

Published : 2007-09-10 14:17

Updated : 2017-07-28 18:33


NVD link : CVE-2007-4787

Mitre link : CVE-2007-4787


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

sophos

  • sophos_anti-virus
  • scanning_engine