Old Format, New Bug
Posted by Sachin Garg on 12th September 2005 | Permanent Link
Secunia Research has discovered a vulnerability in NOD32 Anti-Virus, which potentially can be exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to an error in handling ARJ archives containing compressed files with overly long filename. This can be exploited to cause a heap-based buffer overflow when a specially crafted ARJ archive is scanned.
Successful exploitation may allow arbitrary code execution, but requires that archive scanning is enabled. Bug has been fixed.
More details available here.