Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:23764
HistoryMay 07, 2010 - 12:00 a.m.

ESET Smart Security LZH archive parsing vulnerability

2010-05-0700:00:00
vulners.com
10

Software: ESET Smart Security 4.2 and NOD32 Antivirus 4.2 (x32-x64)

Vendor status: notified/ignored

Tested on: Windows XP, Vista, 7 (x32 and x64)

Description: Scanning of malicious file causes heap corruption in context of
the service process (ekrn.exe). See Dr. Watson log (drwtsn32.log) for
details.

PoC : http://www.esagelab.com/files/eset_lzh.zip