Advisories Blog | G5 Cyber Security

zlaveOLE.txt

A security vulnerability existed in the anti-virus engine of specific versions of ZoneAlarm Anti-Virus and ZoneAlarm Security Suite (ZoneAlarm and ZoneAlarm Pro are not affected.) The vulnerability was caused due to an integer overflow in the Vet anti-virus engine (VetE.dll) when analyzing OLE streams. This can be exploited to cause a heap-based buffer overflow via a specially crafted Microsoft Office document.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/39319/zlaveOLE.txt

Source: https://packetstormsecurity.com/files/39319/zlaveOLE.txt.html

Exit mobile version