Total Commander FileInfo 2.09 Plugin - Multiple PE File Denial of Service Vulnerabilities
Author: Gynvael Coldwind
type: dos
platform: windows
port:
date_added: 2007-07-20
date_updated: 2013-12-27
verified: 1
codes: CVE-2007-4463;OSVDB-46835
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/25373/info
The FileInfo plugin for Total Commander is prone to multiple PE file denial-of-service vulnerabilities because the plugin fails to properly handle malformed input.
Successfully exploiting these issues allows remote attackers to crash the affected application.
FileInfo 2.09 is vulnerable; other versions may also be affected.
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/30512.exe