- Description
- Buffer overflow in the archive decompression library (vrAZMain.dll 5.8.22.137), as used in HAURI anti-virus products including (1) ViRobot Expert 4.0, (2) ViRobot Advanced Server, and (3) HAURI LiveCall, allows user-assisted attackers to execute arbitrary code via an ALZ archive containing a file with a long filename.
- Source
- cve@mitre.org
- NVD status
- Deferred
CVSS 2.0
- Type
- Primary
- Base score
- 4
- Impact score
- 4.9
- Exploitability score
- 4.9
- Vector string
- AV:N/AC:H/Au:N/C:P/I:P/A:N
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:hauri:hauri_livecall:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D7FC488B-3C4B-4843-85D2-C09E9B9AFC3C"
},
{
"criteria": "cpe:2.3:a:hauri:virobot:advanced_server:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C7E5B27B-640B-41C0-879E-3CF6D2BD1079"
},
{
"criteria": "cpe:2.3:a:hauri:virobot:expert_4.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FE9328E0-81C0-4CBD-A574-D6171EF70182"
},
{
"criteria": "cpe:2.3:a:hauri:virobot:linux_server_2.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "22A8E8C8-5B4F-41C1-8386-B518A9D9BCCB"
},
{
"criteria": "cpe:2.3:a:hauri:vrazmain.dll:5.8.22.137:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2DD3726E-D978-49EE-8A45-7C4C021F804C"
}
],
"operator": "OR"
}
]
}
]