Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-6536

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2008-6536
Last Modified 29 May 2013 10:39:15
Published 29 Mar 2009 09:30:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-6536

Summary

Unspecified vulnerability in 7-zip before 4.5.7 has unknown impact and remote attack vectors, as demonstrated by the PROTOS GENOME test suite for Archive Formats (c10).

Vulnerable Systems

Application

  • 7-zip 2.00

  • 7-zip 2.10

  • 7-zip 2.11

  • 7-zip 2.20

  • 7-zip 2.21

  • 7-zip 2.22

  • 7-zip 2.23

  • 7-zip 2.24

  • 7-zip 2.30

  • 7-zip 3.08

  • 7-zip 3.08.02

  • 7-zip 3.08.03

  • 7-zip 3.08.04

  • 7-zip 3.09.01

  • 7-zip 3.09.02

  • 7-zip 3.10

  • 7-zip 3.11

  • 7-zip 3.12

  • 7-zip 3.13

  • 7-zip 4.07

  • 7-zip 4.08

  • 7-zip 4.09

  • 7-zip 4.10

  • 7-zip 4.11

  • 7-zip 4.12

  • 7-zip 4.13

  • 7-zip 4.14

  • 7-zip 4.15

  • 7-zip 4.16

  • 7-zip 4.17

  • 7-zip 4.18

  • 7-zip 4.19

  • 7-zip 4.20

  • 7-zip 4.23

  • 7-zip 4.24

  • 7-zip 4.25

  • 7-zip 4.26

  • 7-zip 4.27

  • 7-zip 4.28

  • 7-zip 4.29

  • 7-zip 4.30

  • 7-zip 4.31

  • 7-zip 4.32

  • 7-zip 4.33

  • 7-zip 4.34

  • 7-zip 4.35

  • 7-zip 4.36

  • 7-zip 4.37

  • 7-zip 4.38

  • 7-zip 4.39

  • 7-zip 4.40

  • 7-zip 4.41

  • 7-zip 4.42

  • 7-zip 4.43

  • 7-zip 4.44

  • 7-zip 4.45

  • 7-zip 4.46

  • 7-zip 4.47

  • 7-zip 4.48

  • 7-zip 4.49

  • 7-zip 4.50

  • 7-zip 4.51

  • 7-zip 4.52

  • 7-zip 4.53

  • 7-zip 4.54

  • 7-zip 4.55

  • 7-zip 4.56

  • 7-zip 4.57


References

VUPEN - ADV-2008-0914

XF - 7zip-archives-code-execution(41247)

BID - 28285

MISC - http://www.ee.oulu.fi/research/ouspg/protos/testing/c10/archive/

MISC - http://www.cert.fi/haavoittuvuudet/joint-advisory-archive-formats.html

SECUNIA - 29434

OSVDB - 43649

CONFIRM - http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf

Related Patches

SUN137477-02 Solaris 9 SPARC: p7zip patch


Last Updated: 27 May 2016 10:54:52