HIGH · 7.8

CVE-2007-1673

unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points t...

Vulnerability Description

unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
AmavisAmavis<= 2.4.1
AvastAvast Antivirus<= 4.7.980
AvastAvast Antivirus Home4.0
AvastAvast Antivirus Professional4.0
AviraAntivirAll versions
AviraAntivir PersonalAll versions
PandaPanda Antivirus2007
PandaPanda Antivirus And Firewall2007
PicozipPicozipAll versions
Rahul DhesiZoo<= 2.10
UnzooUnzoo4.4
WinaceWinaceAll versions
Barracuda NetworksBarracuda Spam FirewallAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-1673?

CVE-2007-1673 is a vulnerability with a CVSS score of 7.8 (HIGH). unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points t...

How severe is CVE-2007-1673?

CVE-2007-1673 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-1673?

Check the references section above for vendor advisories and patch information. Affected products include: Amavis Amavis, Avast Avast Antivirus, Avast Avast Antivirus Home, Avast Avast Antivirus Professional, Avira Antivir.