4.3
CVE-2012-1420
- EPSS 19.73%
- Published 21.03.2012 10:11:47
- Last modified 11.04.2025 00:51:21
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
The TAR file parser in Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, F-Prot Antivirus 4.6.2.117, Fortinet Antivirus 4.2.254.0, K7 AntiVirus 9.77.3565, Kaspersky Anti-Virus 7.0.0.125, Antimalware Engine 1.1.6402.0 in Microsoft Security Essentials 2.0, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, Panda Antivirus 10.0.2.7, and Rising Antivirus 22.83.00.03 allows remote attackers to bypass malware detection via a POSIX TAR file with an initial \7fELF character sequence. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.
Data is provided by the National Vulnerability Database (NVD)
Authentium ≫ Command Antivirus Version5.2.11.5
Cat ≫ Quick Heal Version11.00
Eset ≫ Nod32 Antivirus Version5795
F-prot ≫ F-prot Antivirus Version4.6.2.117
Fortinet ≫ Fortinet Antivirus Version4.2.254.0
K7computing ≫ Antivirus Version9.77.3565
Kaspersky ≫ Kaspersky Anti-virus Version7.0.0.125
Microsoft ≫ Security Essentials Version2.0
Pandasecurity ≫ Panda Antivirus Version10.0.2.7
Rising-global ≫ Rising Antivirus Version22.83.00.03
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 19.73% | 0.952 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|