Title : Avast! CHM Unpacker File Handling Remote Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2006-2115 CVE ID : CVE-2006-2869
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-06-02
Technical Description
A vulnerability has been identified in Avast!, which could be exploited by attackers or malware to take complete control of an affected system. This flaw is due to a buffer overflow error when processing malformed CHM files, which could be exploited by attackers to execute arbitrary commands (e.g. by sending an email containing a malicious file to a machine being protected by an affected product).