Overview
The McAfee VirusScan progream contains a buffer overflow vulnerability. If exploited, this vulnerability may allow an attacker to arbitrary execute code.
Description
McAfee VirusScan Enterprise includes an anti-virus, firewall, and host-based intrusion protection system. The on-demand virus scanner component of McAfee VirusScan Enterprise contains a heap buffer overflow vulnerability. This vulnerability occurs because the scanner fails to properly process files with long file names that contain multi-byte characters. |
Impact
A remote, unauthenticated attacker may be able to execute arbitrary code with SYSTEM privileges or create a denial-of-service condition. |
Solution
Update McAfee has released VirusScan Enterprise 8.0i patch 12 to address this issue. See McAfee Security Bulletin 612750 for instructions on how to install this update directly or through McAfee's ePolicy Orchestrator. |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
- https://knowledge.mcafee.com/SupportSite/dynamickc.do?externalId=612750&command=show&forward=nonthreadedKC
- http://www.mcafee.com/us/enterprise/products/anti_virus/file_servers_desktops/virusscan_enterprise_80i.html
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=515
- http://secunia.com/advisories/24914/
Acknowledgements
Thanks it iDefense labs and McAfee for information that was used in this report.
This document was written by Ryan Giobbi.
Other Information
CVE IDs: | None |
Severity Metric: | 8.16 |
Date Public: | 2007-04-17 |
Date First Published: | 2007-04-21 |
Date Last Updated: | 2007-04-21 11:05 UTC |
Document Revision: | 11 |