Title : BitDefender Antivirus Engine PE File Parsing Plugin Remote Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2006-5040 CVE ID : CVE-2006-6627
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-12-17
Technical Description
A vulnerability has been identified in various BitDefender Antivirus products, which could be exploited by attackers or malware to take complete control of an affected system. This flaw is due to a buffer overflow error within the PE file parsing plugin when processing malformed files, which could be exploited by attackers to execute arbitrary commands by tricking a vulnerable application into scanning a specially crafted file.