Total Commander FileInfo 2.09 Plugin - Multiple PE File Denial of Service Vulnerabilities

Author: Gynvael Coldwind
type: dos
platform: windows
port: 
date_added: 2007-07-20
date_updated: 2013-12-27
verified: 1
codes: CVE-2007-4463;OSVDB-46835
tags: 
aliases: 
screenshot_url: 
application_url: 

source: https://www.securityfocus.com/bid/25373/info

The FileInfo plugin for Total Commander is prone to multiple PE file denial-of-service vulnerabilities because the plugin fails to properly handle malformed input.

Successfully exploiting these issues allows remote attackers to crash the affected application.

FileInfo 2.09 is vulnerable; other versions may also be affected.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/30512.exe
↑