Vulnerability Details CVE-2008-6904
Multiple unspecified vulnerabilities in Sophos SAVScan 4.33.0 for Linux, and possibly other products and versions, allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via crafted files that have been packed with (1) armadillo, (2) asprotect, or (3) asprotectSKE.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.066
EPSS Ranking 90.7%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2008-6904
-
cpe:2.3:a:sophos:anti-virus7.6.3:*
-
cpe:2.3:a:sophos:anti-virus:4.37.0
-
cpe:2.3:a:sophos:anti-virus:4.7.18
-
cpe:2.3:a:sophos:anti-virus:4.9.18
-
cpe:2.3:a:sophos:anti-virus:6.4.5
-
cpe:2.3:a:sophos:anti-virus:7.0.5