Multiple integer overflows in Grisoft AVG Anti-Virus before 7.1.407 allow remote attackers to execute arbitrary code via crafted (1) CAB or (2) RAR archives that trigger a heap-based buffer overflow. NOTE: some of these details are obtained from third party information.
http://www.vupen.com/english/advisories/2006/4498
http://www.grisoft.com/doc/36365/lng/us/tpl/tpl01