Secunia Advisory: SA26948  
Release Date: 2007-09-27

Critical: Not critical
Impact: Security Bypass
Where: From remote
Solution Status: Vendor Patch

Software: F-Secure Anti-Virus for Windows Servers 7.x

Description:
A vulnerability has been reported in F-Secure Anti-Virus, which can be exploited by malware to bypass the scanning functionality.

The vulnerability is caused due to an unspecified error in the handling of archives and packed executables. This can be exploited to bypass the anti-virus scanning functionality by placing specially crafted archives or packed executables in the "system32" directory.

The vulnerability only affects 64-bit server platforms.

The vulnerability is reported in F-Secure Anti-Virus for Windows Servers version 7.00.

Solution:
Apply patch.
ftp://ftp.f-secure.com/support/hotfix/fsav/fsav720-01-signed.fsfix

Provided and/or discovered by:
The vendor credits Mr Papadorotheoun.

Original Advisory:
http://www.f-secure.com/security/fsc-2007-6.shtml

資料來源 Secunia
arrow
arrow
    全站熱搜
    創作者介紹
    創作者 ivan0914 的頭像
    ivan0914

    I'n Blog 之萬象真藏

    ivan0914 發表在 痞客邦 留言(0) 人氣()