Zero-day Vulnerability Database

Change view:

Zero-day vulnerabilities discovered: 1

Buffer overflow in Lhaca File Archiver
CVE-2007-3375

Buffer overflow

The vulnerability allows a remote user to execute arbitrary code on the target system.

The vulnerability exists due to boundary error in Lhaca File Archiver when processing .lzh archives. A remote attacker can create a specially crafted .lzh file, trick the victim into opening it, cause stack-based buffer overflow and execute arbitrary code with privileges of the current user.

Successful exploitation of the vulnerability results in compromise of vulnerable system.

Note: this vulnerability is being actively exploited.

Software: File Archiver

Known/fameous malware:

Trojan.Lhdropper

Vulnerability Scanning SaaS

Vulnerability scanning SaaS service is online 3-rd generation vulnerability scanner with scheduled assessments and vulnerability subscription. You can use service to check security of your network perimeter.