Release DateNov 04, 2011 |
Severitycritical |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attack attempt to exploit a remote Code Execution vulnerability in TUGZip.The vulnerability is caused by an error when handling a malformed zip file. It can be exploited via a crafted zip file, leading to remote code execution. |
Affected ProductsTUGZip 3.00 |
Recommended ActionsCurrently we are not aware of any patches supplied by the vendor for this issue. |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2008-4779 |