Talos is releasing an advisory for multiple vulnerabilities that have been found within the Total Commander FileInfo plugin. These vulnerabilities are local denial of service flaws and have been assigned CVE-2015-2869. An attacker who controls the content of a. COFF Archive Library (.lib) file can can cause an out of bounds read by specifying overly large values for the “Resource Table Count” field of the LE Header or the “Object” field at offset 0x8 from a.Resource Table Entry.”]
Source: https://blog.talosintelligence.com/2015/07/vulnerability-spotlight-total-commander.html

