FYI…

- http://secunia.com/advisories/20028/
Release Date: 2006-05-09
Critical: Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch
…Successful exploitation allows execution of arbitrary code, but requires that Cabinet file inspection is enabled.
Solution:
The vendor has issued updated versions (see patch matrix in the vendor's advisory)…
Original Advisory:
Sophos: http://www.sophos.com/support/knowledgebas…ticle/4934.html …"
Last updated: 8 May 2006

:ph34r: