Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

HTTP:STC:DL:ACE-BO

Severity

Minor

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

Avast! Antivirus ACE File Handling Buffer Overflow

Release Date

2010/09/15

Update Number

1773

Supported Platforms

idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

HTTP: Avast! Antivirus ACE File Handling Buffer Overflow


This signature detects attempts to exploit a known vulnerability in the Avast! Antivirus. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the service.

Extended Description

Stack-based buffer overflow in the ACE archive decompression library (vrAZace.dll) in HAURI Anti-Virus products including ViRobot Expert 4.0, Advanced Server, Linux Server 2.0, and LiveCall, when compressed file scanning is enabled, allows remote attackers to execute arbitrary code via an ACE archive that contains a file with a long filename.

Affected Products

  • Hauri livecall
  • Hauri virobot_advanced_server
  • Hauri virobot_expert 4.0
  • Hauri virobot_linux_server 2.0

References

  • CVE: CVE-2005-2720
  • CVE: CVE-2005-2385
  • URL: http://securitytracker.com/id?1014544

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out