CVE-2008-6662
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
07/04/2009
Last modified:
09/04/2025
Description
AVG Anti-Virus for Linux 7.5.51, and possibly earlier, allows remote attackers to cause a denial of service (segmentation fault) or possibly execute arbitrary code via a malformed UPX compressed file, which triggers memory corruption.
Impact
Base Score 2.0
4.30
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* | ||
cpe:2.3:a:avg:avg_anti-virus:7.5.51:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://marc.info/?l=bugtraq&m=122893196715523&w=2
- http://www.ivizsecurity.com/security-advisory-iviz-sr-08014.html
- http://www.osvdb.org/51962
- http://www.securityfocus.com/bid/32749
- http://www.vupen.com/english/advisories/2008/3461
- https://exchange.xforce.ibmcloud.com/vulnerabilities/47254
- http://marc.info/?l=bugtraq&m=122893196715523&w=2
- http://www.ivizsecurity.com/security-advisory-iviz-sr-08014.html
- http://www.osvdb.org/51962
- http://www.securityfocus.com/bid/32749
- http://www.vupen.com/english/advisories/2008/3461
- https://exchange.xforce.ibmcloud.com/vulnerabilities/47254