CVE-2007-2972

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/06/2007
Last modified:
09/04/2025

Description

The file parsing engine in Avira Antivir Antivirus before 7.04.00.24 allows remote attackers to cause a denial of service (application crash) via a crafted UPX compressed file, which triggers a divide-by-zero error.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:avira:antivir:*:*:*:*:*:*:*:* 7.04.00.23 (including)
cpe:2.3:a:avira:av_pack:*:*:*:*:*:*:*:* 7.03.00.08 (including)