----------------------------------------------------------------------- [ iViZ Security Advisory 08-015 10/12/2008 ] ----------------------------------------------------------------------- iViZ Techno Solutions Pvt. Ltd. http://www.ivizsecurity.com ----------------------------------------------------------------------- * Title: Sophos Antivirus for Linux vulnerability * Date: 10/12/2008 * Software: Sophos SAVScan 4.33.0 for Linux --[ Synopsis: Sophos Antivirus deterministically crashes (segmentation fault) when analyzing corrupted packed files for multiple packers : armadillo, asprotect, asprotectSKE. The same behavior has also been observed when analyzing corrupted CAB files. --[ Affected Software: * Sophos SAVScan 4.33.0 for Linux, possibly others --[ Impact: Remote DoS, possibly remote code execution. --[ Vendor response: * Vendor acknowledged the problems and will "fix the issues" in the next release. --[ Credits: This vulnerability was discovered by Security Researcher Jonathan Brossard from iViZ Techno Solutions Pvt. Ltd. --[ Disclosure timeline: --[ Reference: http://www.ivizsecurity.com/security-advisory.html