CVE-2010-1425

Published Apr 15, 2010

Last updated a day ago

Overview

Description
F-Secure Internet Security 2010 and earlier; Anti-Virus for Microsoft Exchange 9 and earlier, and for MIMEsweeper 5.61 and earlier; Internet Gatekeeper for Windows 6.61 and earlier, and for Linux 4.02 and earlier; Anti-Virus 2010 and earlier; Home Server Security 2009; Protection Service for Consumers 9 and earlier, for Business - Workstation security 9 and earlier, for Business - Server Security 8 and earlier, and for E-mail and Server security 9 and earlier; Mac Protection build 8060 and earlier; Client Security 9 and earlier; and various Anti-Virus products for Windows, Linux, and Citrix; does not properly detect malware in crafted (1) 7Z, (2) GZIP, (3) CAB, or (4) RAR archives, which makes it easier for remote attackers to avoid detection.
Source
cve@mitre.org
NVD status
Modified
Products
anti-virus, f-secure_anti-virus, f-secure_anti-virus_client_security, f-secure_anti-virus_for_citrix_servers, f-secure_anti-virus_for_linux, f-secure_anti-virus_for_microsoft_exchange, f-secure_anti-virus_for_mimesweeper, f-secure_anti-virus_for_windows_servers, f-secure_anti-virus_for_workstations, f-secure_anti-virus_linux_client_security, f-secure_anti-virus_linux_server_security, f-secure_internet_security, home_server_security, internet_gatekeeper

Risk scores

CVSS 2.0

Type
Primary
Base score
5
Impact score
2.9
Exploitability score
10
Vector string
AV:N/AC:L/Au:N/C:N/I:P/A:N

Weaknesses

nvd@nist.gov
NVD-CWE-Other

Social media

Hype score
Not currently trending

Configurations