CVE-2006-4438
medium · 6.4Heap-based buffer overflow in SpIDer for Dr.Web Scanner for Linux 4.33, and possibly earlier versions, allows remote attackers to execute arbitrary code via an LHA archive with an extended header that contains a long directory name.
6.4
CVSS
10.5%
EPSS (exploit prob.)
96th
EPSS percentile
2006-09-20
Published
AV:N/AC:L/Au:N/C:P/I:P/A:N
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| doctor_web_ltd | dr.web | <= 4.33_for_linux |
Check a specific version with /api/v1/cve/match.
References
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-October/049552.html
- http://secunia.com/advisories/22019
- http://www.securityfocus.com/bid/20119
- http://www.vupen.com/english/advisories/2006/3719
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-October/049552.html
- http://secunia.com/advisories/22019
- http://www.securityfocus.com/bid/20119
- http://www.vupen.com/english/advisories/2006/3719
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2006-4438