Product:

F\-Secure_anti\-Virus

(F\-Secure)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 36
Date Id Summary Products Score Patch Annotated
2012-03-21 CVE-2012-1429 The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, and nProtect Anti-Virus 2011-01-17.01 allows remote attackers to bypass malware detection via an ELF file with a ustar character sequence at a certain location. NOTE: this may later be SPLIT into... Esafe, Comodo_antivirus, Anti\-Malware, F\-Secure_anti\-Virus, Ikarus_virus_utilities_t3_command_line_scanner, Gateway, Scan_engine, Nprotect_antivirus, Bitdefender N/A
2010-04-15 CVE-2010-1425 F-Secure Internet Security 2010 and earlier; Anti-Virus for Microsoft Exchange 9 and earlier, and for MIMEsweeper 5.61 and earlier; Internet Gatekeeper for Windows 6.61 and earlier, and for Linux 4.02 and earlier; Anti-Virus 2010 and earlier; Home Server Security 2009; Protection Service for Consumers 9 and earlier, for Business - Workstation security 9 and earlier, for Business - Server Security 8 and earlier, and for E-mail and Server security 9 and earlier; Mac Protection build 8060 and... Anti\-Virus, F\-Secure_anti\-Virus, F\-Secure_anti\-Virus_client_security, F\-Secure_anti\-Virus_for_citrix_servers, F\-Secure_anti\-Virus_for_linux, F\-Secure_anti\-Virus_for_microsoft_exchange, F\-Secure_anti\-Virus_for_mimesweeper, F\-Secure_anti\-Virus_for_windows_servers, F\-Secure_anti\-Virus_for_workstations, F\-Secure_anti\-Virus_linux_client_security, F\-Secure_anti\-Virus_linux_server_security, F\-Secure_internet_security, Home_server_security, Internet_gatekeeper N/A
2009-02-06 CVE-2008-6085 Integer overflow in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, when configured to scan inside compressed archives, allows remote attackers to execute arbitrary code via a crafted RPM compressed archive file, which triggers a buffer overflow. F\-Secure_anti\-Virus, F\-Secure_anti\-Virus_for_citrix_servers, F\-Secure_anti\-Virus_for_microsoft_exchange, F\-Secure_anti\-Virus_for_mimesweeper, F\-Secure_anti\-Virus_for_windows_servers, F\-Secure_anti\-Virus_for_workstations, F\-Secure_anti\-Virus_linux_client_security, F\-Secure_anti\-Virus_linux_server_security, F\-Secure_client_security, F\-Secure_home_server_security, F\-Secure_internet_gatekeeper_for_linux, F\-Secure_internet_gatekeeper_for_windows, F\-Secure_internet_security, F\-Secure_linux_security, F\-Secure_messaging_security_gateway, F\-Secure_protection_service_for_business, F\-Secure_protection_service_for_consumers N/A
2008-03-20 CVE-2008-1412 Unspecified vulnerability in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, allows remote attackers to execute arbitrary code or cause a denial of service (hang or crash) via a malformed archive that triggers an unhandled exception, as demonstrated by the PROTOS GENOME test suite for Archive Formats. F\-Secure_anti\-Virus, F\-Secure_anti\-Virus_client_security, F\-Secure_anti\-Virus_for_linux, F\-Secure_anti\-Virus_for_workstations, F\-Secure_anti\-Virus_linux_client_security, F\-Secure_client_security, F\-Secure_internet_security, F\-Secure_mobile_antivirus_for_s60, F\-Secure_mobile_antivirus_for_windows_mobile, F\-Secure_mobile_security_for_series_80, F\-Secure_protection_service_for_business, F\-Secure_protection_service_for_consumers N/A
2008-02-22 CVE-2008-0910 Multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, F-Secure Protection Service, and others, allow remote attackers to bypass malware detection via a crafted RAR archive. NOTE: this might be related to CVE-2008-0792. F\-Secure_anti\-Virus, F\-Secure_anti\-Virus_client_security, F\-Secure_anti\-Virus_for_linux, F\-Secure_anti\-Virus_for_workstations, F\-Secure_anti\-Virus_linux_client_security, F\-Secure_internet_security, F\-Secure_protection_service_for_business, F\-Secure_protection_service_for_consumers N/A
2008-02-15 CVE-2008-0792 Multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, F-Secure Protection Service, and others, allow remote attackers to bypass malware detection via a crafted CAB archive. F\-Secure_anti\-Virus, F\-Secure_anti\-Virus_client_security, F\-Secure_anti\-Virus_for_linux, F\-Secure_anti\-Virus_for_workstations, F\-Secure_anti\-Virus_linux_client_security, F\-Secure_internet_security, F\-Secure_protection_service_for_business, F\-Secure_protection_service_for_consumers N/A
2007-10-01 CVE-2007-5143 F-Secure Anti-Virus for Windows Servers 7.0 64-bit edition allows local users to bypass virus scanning by using the system32 directory to store a crafted (1) archive or (2) packed executable. NOTE: in many environments, this does not cross privilege boundaries because any process able to write to system32 could also shut off F-Secure Anti-Virus. F\-Secure_anti\-Virus N/A
2007-06-20 CVE-2007-3300 Multiple F-Secure anti-virus products for Microsoft Windows and Linux before 20070619 allow remote attackers to bypass scanning via a crafted header in a (1) LHA or (2) RAR archive. F\-Secure_anti\-Virus, F\-Secure_anti\-Virus_linux_client_security, F\-Secure_anti\-Virus_linux_server_security, F\-Secure_internet_security, Internet_gatekeeper, Solutions_based_on_f\-Secure_personal_express N/A
2007-05-31 CVE-2007-2967 Multiple F-Secure anti-virus products for Microsoft Windows and Linux before 20070522 allow remote attackers to cause a denial of service (file scanning infinite loop) via certain crafted (1) ARJ archives or (2) FSG packed files. F\-Secure_anti\-Virus, F\-Secure_anti\-Virus_client_security, F\-Secure_anti\-Virus_linux_client_security, F\-Secure_anti\-Virus_linux_server_security, F\-Secure_internet_security, F\-Secure_protection_service, Internet_gatekeeper N/A
2007-05-31 CVE-2007-2966 Buffer overflow in the LHA decompression component in F-Secure anti-virus products for Microsoft Windows and Linux before 20070529 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted LHA archive, related to an integer wrap, a similar issue to CVE-2006-4335. F\-Secure_anti\-Virus, F\-Secure_anti\-Virus_client_security, F\-Secure_anti\-Virus_linux_client_security, F\-Secure_anti\-Virus_linux_server_security, F\-Secure_internet_security, F\-Secure_protection_service, Internet_gatekeeper N/A