Sophos Anti-Virus是一款流行的反病毒程序。
Sophos Anti-Virus处理CPIO档和SIT档存在问题,远程攻击者可以利用漏洞进行缓冲区溢出攻击,可能以应用程序进程权限执行任意指令。
当解析SIT档时,超长的非NULL终结文件名被Veex.dll处理时,可导致由于字符串实际大小的计算错误而造成堆溢出。
当解析CPIO档时,超长的非NULL终结文件名被Veex.dll处理时,可导致基于堆栈的溢出。
Sophos Anti-Virus 5.2.1
Sophos Anti-Virus 5.2
Sophos Anti-Virus 5.0.4
Sophos Anti-Virus 5.0.2
Sophos Anti-Virus 5.0.1
Sophos Anti-Virus 4.7.2
Sophos Anti-Virus 4.7.1
Sophos Anti-Virus 4.5.12
Sophos Anti-Virus 4.5.11
Sophos Anti-Virus 4.5.4
Sophos Anti-Virus 4.5.3
Sophos Anti-Virus 3.96 .0
Sophos Anti-Virus 3.95
Sophos Anti-Virus 3.91
Sophos Anti-Virus 3.90
Sophos Anti-Virus 3.86
Sophos Anti-Virus 3.85
Sophos Anti-Virus 3.84
Sophos Anti-Virus 3.83
Sophos Anti-Virus 3.82
Sophos Anti-Virus 3.81
Sophos Anti-Virus 3.80
Sophos Anti-Virus 3.79
Sophos Anti-Virus 3.78 d
Sophos Anti-Virus 3.78
Sophos Anti-Virus 3.4.6
- Microsoft Windows 2000 Professional SP2
- Microsoft Windows 2000 Professional SP1
- Microsoft Windows 2000 Professional
- Microsoft Windows NT 4.0 SP6a
- Microsoft Windows NT 4.0 SP6
- Microsoft Windows NT 4.0 SP5
- Microsoft Windows NT 4.0 SP4
- Microsoft Windows NT 4.0 SP3
- Microsoft Windows NT 4.0 SP2
- Microsoft Windows NT 4.0 SP1
- Microsoft Windows NT 4.0
Sophos Anti-Virus 6.0
Sophos Anti-Virus 5.1
Sophos Anti-Virus 4.05
Sophos Anti-Virus 4.04
可参考如下公告获得解决方案:
<a href="http://www.sophos.com/support/knowledgebase/article/17340.html" target="_blank">http://www.sophos.com/support/knowledgebase/article/17340.html</a>
暂无评论