decompression vulnerabilty in AV softwares

Discussion in 'other anti-virus software' started by Arin, Jun 1, 2004.

Thread Status:
Not open for further replies.
  1. Arin

    Arin Registered Member

    Joined:
    May 1, 2004
    Posts:
    997
    Location:
    India
    a bug is found in most AV softwares during decompression of very high compression ratio files. details can be found here.

    for testing purpose you can download the "decompression boms" from here.
     
  2. RejZoR

    RejZoR Lurker

    Joined:
    May 31, 2004
    Posts:
    6,426
    No problems with Mozilla 1.7 or with NOD32 or avast!...
     
  3. Arin

    Arin Registered Member

    Joined:
    May 1, 2004
    Posts:
    997
    Location:
    India
    have you tested those products against those bombs? mainly the linux flavoures were tested in this report. anyone downoading and testing it against the latest Windows version should do it on a spare machine as it might trigger some serious crash.
     
  4. RejZoR

    RejZoR Lurker

    Joined:
    May 31, 2004
    Posts:
    6,426
    I tried the 100MB GIF bomb. Nothing happened in Mozilla 1.7,picture loaded as normal (it was only red all over the screen)
     
  5. Arin

    Arin Registered Member

    Joined:
    May 1, 2004
    Posts:
    997
    Location:
    India
    thanks for testing RejZor. waiting for the AV tests.
     
  6. backfolder

    backfolder Registered Member

    Joined:
    May 25, 2004
    Posts:
    72
    Location:
    Spain
    AMRX...
    Don´t you have headache with that avatar? So, you don´t need pic-bomb to get it! :] He, he! no problems here also with NOD32 v.2.
    Cheers!

    backfolder.- :D
     
  7. Kobra

    Kobra Registered Member

    Joined:
    May 11, 2004
    Posts:
    129
    AVK passes all tests.
     
  8. RejZoR

    RejZoR Lurker

    Joined:
    May 31, 2004
    Posts:
    6,426
    I would test with all of them,but i don't know how to get them all with one click. I tried web ripper and FTP client,but i cannot access pub folder content heh. Downloading one by one is killing slow hehe
     
  9. Arin

    Arin Registered Member

    Joined:
    May 1, 2004
    Posts:
    997
    Location:
    India
    this is the way i usually end up working! now that you've mentioned it i'm feeling a slight pain on my forehead. i like this avataar i got it from Dmitry Kutsanov. dear RejZor try IExplorer and use "PASV mode for FTP" if you have a firewall.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.