F-Secure Internet Security 2010 and earlier; Anti-Virus for Microsoft Exchange 9 and earlier, and for MIMEsweeper 5.61 and earlier; Internet Gatekeeper for Windows 6.61 and earlier, and for Linux 4.02 and earlier; Anti-Virus 2010 and earlier; Home Server Security 2009; Protection Service for Consumers 9 and earlier, for Business - Workstation security 9 and earlier, for Business - Server Security 8 and earlier, and for E-mail and Server security 9 and earlier; Mac Protection build 8060 and earlier; Client Security 9 and earlier; and various Anti-Virus products for Windows, Linux, and Citrix; does not properly detect malware in crafted (1) 7Z, (2) GZIP, (3) CAB, or (4) RAR archives, which makes it easier for remote attackers to avoid detection
Published Apr 15, 2010
5.0
MEDIUMCVSS 2.0
EPSS 2.15%
Description
F-Secure Internet Security 2010 and earlier; Anti-Virus for Microsoft Exchange 9 and earlier, and for MIMEsweeper 5.61 and earlier; Internet Gatekeeper for Windows 6.61 and earlier, and for Linux 4.02 and earlier; Anti-Virus 2010 and earlier; Home Server Security 2009; Protection Service for Consumers 9 and earlier, for Business - Workstation security 9 and earlier, for Business - Server Security 8 and earlier, and for E-mail and Server security 9 and earlier; Mac Protection build 8060 and earlier; Client Security 9 and earlier; and various Anti-Virus products for Windows, Linux, and Citrix; does not properly detect malware in crafted (1) 7Z, (2) GZIP, (3) CAB, or (4) RAR archives, which makes it easier for remote attackers to avoid detection.
Affected products
No data.
Configuration 1
- ≤ 9.00
- 6.62
- 7.0
- 7.10
- n/a
- n/a
- ≤ 2010
- 2.16
- 2.16
- 4.50
- 4.50
- 4.50_hotfix_1
- 4.50_hotfix_1
- 4.50_hotfix_2
- 4.50_hotfix_2
- 4.51
- 4.51
- 4.51
- 4.51
- 4.51_hotfix_2
- 4.51_hotfix_2
- 4.52
- 4.52
- 4.52
- 4.52
- 4.52
- 4.60
- 4.60
- 4.61
- 4.61
- 4.61
- 4.62
- 4.62
- 4.64
- 4.64
- 4.64
- 4.65
- 4.65
- 4.65
- 5.0
- 5.0
- 5.0
- 5.0.2
- 5.01
- 5.01
- 5.01
- 5.2.1
- 5.3.0
- 5.5
- 5.5
- 5.5
- 5.5
- 5.5
- 5.11
- 5.11
- 5.11
- 5.40
- 5.40
- 5.41
- 5.41
- 5.41
- 5.41
- 5.41
- 5.42
- 5.42
- 5.42
- 5.42
- 5.42
- 5.43
- 5.43
- 5.44
- 5.44
- 5.51
- 5.51
- 5.51
- 5.52
- 5.52
- 5.52
- 5.52
- 5.52
- 5.54
- 5.54
- 5.55
- 5.55
- 5.56
- 5.61
- 5.61
- 6.01
- 6.01
- 6.01
- 6.02
- 6.2
- 6.02
- 6.2
- 6.2
- 6.03
- 6.03
- 6.21
- 6.21
- 6.30
- 6.30
- 6.30_sr1
- 6.30_sr1
- 6.31
- 6.31
- 6.40
- 6.40
- 6.60
- 6.60
- 6.61
- 6.61
- 7.00
- 7.00
- 7.00
- 7.00
- 7.00
- 7.02
- 2003
- 2004
- 2005
- 2006
- 2007
- 2007
- 2007
- 2008
- 2009
- n/a
- 6.03
- 6.04
- 7.01
- 7.10
- 7.00
- n/a
- 4.65
- 6.62
- 7.00
- 7.10
- 5.61
- 8.00
- n/a
- 5.44
- 7.00
- 7.10
- 7.11
- n/a
- 5.30
- 5.52
- 5.53
- 5.54
- n/a
- 5.30
- 5.52
- 5.54
Configuration 2
- n/a
- ≤ 2010
- 7.02
- 2003
- 2004
- 2005
- 2006
- 2007
- 2007
- 2007
- 2008
- 2009
- 2009
- ≤ 4.02
- ≤ 6.61
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
No CWE recorded.
References (6)
- http://secunia.com/advisories/39396 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.f-secure.com/en_EMEA/support/security-advisory/fsc-2010-1.html x_refsource_CONFIRMPatchVendor Advisory
- http://www.securitytracker.com/id?1023841 vdb-entryx_refsource_SECTRACK
- http://www.securitytracker.com/id?1023842 vdb-entryx_refsource_SECTRACK
- http://www.securitytracker.com/id?1023843 vdb-entryx_refsource_SECTRACK
- http://www.vupen.com/english/advisories/2010/0855 vdb-entryx_refsource_VUPENPatchVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| http://secunia.com/advisories/39396 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.f-secure.com/en_EMEA/support/security-advisory/fsc-2010-1.html | x_refsource_CONFIRMPatchVendor Advisory | |
| http://www.securitytracker.com/id?1023841 | vdb-entryx_refsource_SECTRACK | |
| http://www.securitytracker.com/id?1023842 | vdb-entryx_refsource_SECTRACK | |
| http://www.securitytracker.com/id?1023843 | vdb-entryx_refsource_SECTRACK | |
| http://www.vupen.com/english/advisories/2010/0855 | vdb-entryx_refsource_VUPENPatchVendor Advisory |
Change history (0)
No recorded changes yet.