MEDIUM · 6.8

CVE-2008-1412

Unspecified vulnerability in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, allows remote attackers to execute arbitrar...

Vulnerability Description

Unspecified vulnerability in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, allows remote attackers to execute arbitrary code or cause a denial of service (hang or crash) via a malformed archive that triggers an unhandled exception, as demonstrated by the PROTOS GENOME test suite for Archive Formats.

CVSS Score

6.8

MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
F-SecureF-Secure Anti-Virus2006
F-SecureF-Secure Anti-Virus Client Security<= 6.04
F-SecureF-Secure Anti-Virus For Linux<= 4.65
F-SecureF-Secure Anti-Virus For Workstations<= 7.11
F-SecureF-Secure Anti-Virus Linux Client Security<= 5.54
F-SecureF-Secure Client Security<= 7.11
F-SecureF-Secure Internet Security2006
F-SecureF-Secure Mobile Antivirus For S602nd_edition
F-SecureF-Secure Mobile Antivirus For Windows Mobile5.0
F-SecureF-Secure Mobile Security For Series 80All versions
F-SecureF-Secure Protection Service For Business<= 3.10
F-SecureF-Secure Protection Service For Consumers<= 7.00

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-1412?

CVE-2008-1412 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Unspecified vulnerability in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, allows remote attackers to execute arbitrar...

How severe is CVE-2008-1412?

CVE-2008-1412 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-1412?

Check the references section above for vendor advisories and patch information. Affected products include: F-Secure F-Secure Anti-Virus, F-Secure F-Secure Anti-Virus Client Security, F-Secure F-Secure Anti-Virus For Linux, F-Secure F-Secure Anti-Virus For Workstations, F-Secure F-Secure Anti-Virus Linux Client Security.