A VMSF_DELTA memory corruption was discovered in unrar before 5.5.5,...
Vulnerability Description
A VMSF_DELTA memory corruption was discovered in unrar before 5.5.5, as used in Sophos Anti-Virus Threat Detection Engine before 3.37.2 and other products, that can lead to arbitrary code execution. An integer overflow can be caused in DataSize+CurChannel. The result is a negative value of the "DestPos" variable, which allows the attacker to write out of bounds when setting Mem[DestPos].
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2012-6706
Credits & Attribution
No credits recorded in the NVD database.
References
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1286
- https://nakedsecurity.sophos.com/2012/11/05/tavis-ormandy-sophos/
- https://security.gentoo.org/glsa/201709-24
- https://community.sophos.com/kb/en-us/118424#six
- https://security.gentoo.org/glsa/201708-05
- https://lock.cmpxchg8b.com/sophailv2.pdf
- https://security.gentoo.org/glsa/201804-16
- https://kc.mcafee.com/corporate/index?page=content&id=SB10205
- http://telussecuritylabs.com/threats/show/TSL20121207-01
- http://securitytracker.com/id?1027725
More from sophos
View All →Affected Vendor
sophos
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.