Podatność CVE-2012-1457


Publikacja: 2012-03-21

Opis:
The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, ClamAV 0.96.4, Command Antivirus 5.2.11.5, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, G Data AntiVirus 21, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, K7 AntiVirus 9.77.3565, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, Antimalware Engine 1.1.6402.0 in Microsoft Security Essentials 2.0, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, PC Tools AntiVirus 7.0.3.5, Rising Antivirus 22.83.00.03, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Trend Micro AntiVirus 9.120.0.1004, Trend Micro HouseCall 9.120.0.1004, VBA32 3.12.14.2, and VirusBuster 13.6.151.0 allows remote attackers to bypass malware detection via a TAR archive entry with a length field that exceeds the total TAR file size. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.

Typ:

CWE-264

(Permissions, Privileges, and Access Controls)

CVSS2 => (AV:N/AC:M/Au:N/C:N/I:P/A:N)

Ogólna skala CVSS
Znaczenie
Łatwość wykorzystania
4.3/10
2.9/10
8.6/10
Wymagany dostęp
Złożoność ataku
Autoryzacja
Zdalny
Średnia
Nie wymagana
Wpływ na poufność
Wpływ na integralność
Wpływ na dostępność
Brak
Częściowy
Brak
Affected software
Virusbuster -> Virusbuster 
Trendmicro -> Housecall 
Trendmicro -> Trend micro antivirus 
Symantec -> Endpoint protection 
Rising-global -> Rising antivirus 
Pc tools -> Pc tools antivirus 
Norman -> Norman antivirus & antispyware 
Microsoft -> Security essentials 
Mcafee -> Gateway 
Mcafee -> Scan engine 
Kaspersky -> Kaspersky anti-virus 
K7computing -> Antivirus 
Jiangmin -> Jiangmin antivirus 
Ikarus -> Ikarus virus utilities t3 command line scanner 
Gdata-software -> G data antivirus 
F-prot -> F-prot antivirus 
ESET -> Nod32 antivirus 
Emsisoft -> Anti-malware 
Clamav -> Clamav 
CAT -> Quick heal 
Bitdefender -> Bitdefender 
Avira -> Antivir 
AVG -> Avg anti-virus 
Authentium -> Command antivirus 
Antiy -> Avl sdk 
Anti-virus -> Vba32 
Alwil -> Avast antivirus 
Aladdin -> Esafe 

 Referencje:
http://lists.opensuse.org/opensuse-security-announce/2012-07/msg00002.html
http://www.ieee-security.org/TC/SP2012/program.html
http://www.mandriva.com/security/advisories?name=MDVSA-2012:094
http://www.securityfocus.com/archive/1/522005
http://www.securityfocus.com/bid/52610
https://exchange.xforce.ibmcloud.com/vulnerabilities/74293

Copyright 2024, cxsecurity.com

 

Back to Top