4.3

CVE-2012-1442

The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, eSafe 7.0.17.0, Kaspersky Anti-Virus 7.0.0.125, F-Secure Anti-Virus 9.0.16160.0, Sophos Anti-Virus 4.61.0, Antiy Labs AVL SDK 2.0.3.7, Rising Antivirus 22.83.00.03, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified class field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Aladdin ≫ Esafe Version 7.0.17.0
Antiy ≫ Avl Sdk Version 2.0.3.7
Cat ≫ Quick Heal Version 11.00
F-secure ≫ F-secure Anti-virus Version 9.0.16160.0
Fortinet ≫ Fortinet Antivirus Version 4.2.254.0
Kaspersky ≫ Kaspersky Anti-virus Version 7.0.0.125
Mcafee ≫ Gateway Version 2010.1c
Mcafee ≫ Scan Engine Version 5.400.0.1158
Pandasecurity ≫ Panda Antivirus Version 10.0.2.7
Rising-global ≫ Rising Antivirus Version 22.83.00.03
Sophos ≫ Sophos Anti-virus Version 4.61.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 98.92% 0.999
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.ieee-security.org/TC/SP2012/program.html
http://www.securityfocus.com/archive/1/522005
http://osvdb.org/80426
http://osvdb.org/80427
http://osvdb.org/80428
http://www.securityfocus.com/bid/52598