[24430] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Anti Virus Mailscanners DOS

daemon@ATHENA.MIT.EDU (Martin Lesser)
Tue Feb 26 20:33:49 2002

X-Qmail-Scanner-Mail-From: m-lesser@lesser-com.de via siren
To: bugtraq@securityfocus.com
From: Martin Lesser <m-lesser@lesser-com.de>
Date: 26 Feb 2002 07:36:05 +0100
In-Reply-To: <20020225162902.2279bf0d.maciel@inetd.com.br>
Message-ID: <873czowy0a.fsf@mail.better-com.de>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii

"Eduardo R. Maciel" <maciel@inetd.com.br> writes:

> -----------------------------------
> -----[ SECURITY ANNOUNCEMENT ]-----
> -----------------------------------
> iNetd Security Research Annoucement
> 
> ...
> 
> An antivirus mailscanner should check the filesizes inside a
> compressed file like .tar.gz, .zip, .bz2, etc, BEFORE open the file
> for scanning.
> 
> All the products that doesn't do that checking are vulnerable to a
> Denial Of Service attack.

That is a long known issue and was described in more depth several times
in several ML/news in relation with i.e. http://www.fefe.de/antivirus/42.zip

http://groups.google.com/groups?q=42.zip+antivirus returns 27 (!) 
threads about this issue...

So IMO this so called "announcement" is really no topic here.

Martin

home help back first fref pref prev next nref lref last post