Vulnerability Description
The TAR file parser in Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, F-Prot Antivirus 4.6.2.117, K7 AntiVirus 9.77.3565, Norman Antivirus 6.06.12, and Rising Antivirus 22.83.00.03 allows remote attackers to bypass malware detection via a POSIX TAR file with an initial \42\5A\68 character sequence. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Authentium | Command Antivirus | 5.2.11.5 |
| Cat | Quick Heal | 11.00 |
| F-Prot | F-Prot Antivirus | 4.6.2.117 |
| K7Computing | Antivirus | 9.77.3565 |
| Norman | Norman Antivirus \& Antispyware | 6.06.12 |
| Rising-Global | Rising Antivirus | 22.83.00.03 |
Related Weaknesses (CWE)
References
- http://osvdb.org/80406
- http://osvdb.org/80407
- http://osvdb.org/80409
- http://www.ieee-security.org/TC/SP2012/program.html
- http://www.securityfocus.com/archive/1/522005
- http://www.securityfocus.com/bid/52585
- https://exchange.xforce.ibmcloud.com/vulnerabilities/74241
- http://osvdb.org/80406
- http://osvdb.org/80407
- http://osvdb.org/80409
- http://www.ieee-security.org/TC/SP2012/program.html
- http://www.securityfocus.com/archive/1/522005
- http://www.securityfocus.com/bid/52585
- https://exchange.xforce.ibmcloud.com/vulnerabilities/74241
FAQ
What is CVE-2012-1426?
CVE-2012-1426 is a vulnerability with a CVSS score of 4.3 (MEDIUM). The TAR file parser in Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, F-Prot Antivirus 4.6.2.117, K7 AntiVirus 9.77.3565, Norman Antivirus 6.06.12, and Rising Antivirus 22.83.00.03 ...
How severe is CVE-2012-1426?
CVE-2012-1426 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-1426?
Check the references section above for vendor advisories and patch information. Affected products include: Authentium Command Antivirus, Cat Quick Heal, F-Prot F-Prot Antivirus, K7Computing Antivirus, Norman Norman Antivirus \& Antispyware.