HIGH · 7.5

CVE-2005-3922

Heap-based buffer overflow in pskcmp.dll in Panda Software Antivirus library allows remote attackers to execute arbitrary code via a crafted ZOO archive.

Vulnerability Description

Heap-based buffer overflow in pskcmp.dll in Panda Software Antivirus library allows remote attackers to execute arbitrary code via a crafted ZOO archive.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
PandaPanda Activescan5.0
PandaPanda Antivirus2.0
PandaPanda Antivirus Platinum2.0
PandaPanda Businessecure AntivirusAll versions
PandaPanda Clientshield With Truprevent TechnologiesAll versions
PandaPanda Enterprisecure With Truprevent TechnologiesAll versions
PandaPanda ExchangesecureAll versions
PandaPanda FilesecureAll versions
PandaPanda Filesecure With Truprevent TechnologiesAll versions
PandaPanda GatedefenderAll versions
PandaPanda Isa SecureAll versions
PandaPanda Panda Enterprisecure AntivirusAll versions
PandaPanda Platinum 2006 Internet SecurityAll versions
PandaPanda Security3.0
PandaPanda TitaniumAll versions
PandaPanda Titanium 2005 AntivirusAll versions
PandaPanda Titanium 2006 Antivirus \+ AntispywareAll versions
PandaPanda Truprevent Personal2005
PandaPanda WebadminAll versions

References

FAQ

What is CVE-2005-3922?

CVE-2005-3922 is a vulnerability with a CVSS score of 7.5 (HIGH). Heap-based buffer overflow in pskcmp.dll in Panda Software Antivirus library allows remote attackers to execute arbitrary code via a crafted ZOO archive.

How severe is CVE-2005-3922?

CVE-2005-3922 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-3922?

Check the references section above for vendor advisories and patch information. Affected products include: Panda Panda Activescan, Panda Panda Antivirus, Panda Panda Antivirus Platinum, Panda Panda Businessecure Antivirus, Panda Panda Clientshield With Truprevent Technologies.