CVE-2004-2442
Last modified
CVE-2004-2442 is a vulnerability of currently unknown severity. Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on the target system.. EPSS estimates a 10.64% chance of exploitation in the next 30 days.
Description
Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on the target system.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| F-Secure | F-Secure Anti-Virus | 4.51 |
| F-Secure | F-Secure Anti-Virus | 4.52 |
| F-Secure | F-Secure Anti-Virus | 4.60 |
| F-Secure | F-Secure Anti-Virus | 4.61 |
| F-Secure | F-Secure Anti-Virus | 5.0 |
| F-Secure | F-Secure Anti-Virus | 5.5 |
| F-Secure | F-Secure Anti-Virus | 5.41 |
| F-Secure | F-Secure Anti-Virus | 5.42 |
| F-Secure | F-Secure Anti-Virus | 5.43 |
| F-Secure | F-Secure Anti-Virus | 5.52 |
| F-Secure | F-Secure Anti-Virus | 5.55 |
| F-Secure | F-Secure Anti-Virus | 6.01 |
| F-Secure | F-Secure Anti-Virus | 6.2 |
| F-Secure | F-Secure Anti-Virus | 6.21 |
| F-Secure | F-Secure Anti-Virus | 6.30 |
| F-Secure | F-Secure Anti-Virus | 6.30_sr1 |
| F-Secure | F-Secure Anti-Virus | 6.31 |
| F-Secure | F-Secure Anti-Virus | 2004 |
| F-Secure | F-Secure Anti-Virus | 2005 |
| F-Secure | F-Secure For Firewalls | 6.20 |
| F-Secure | F-Secure Internet Security | 2004 |
| F-Secure | F-Secure Internet Security | 2005 |
| F-Secure | F-Secure Personal Express | 4.5 |
| F-Secure | F-Secure Personal Express | 4.6 |
| F-Secure | F-Secure Personal Express | 4.7 |
| F-Secure | F-Secure Personal Express | 5.0 |
| F-Secure | Internet Gatekeeper | 2.6 |
| F-Secure | Internet Gatekeeper | 6.3 |
| F-Secure | Internet Gatekeeper | 6.4 |
| F-Secure | Internet Gatekeeper | 6.31 |
| F-Secure | Internet Gatekeeper | 6.32 |
| F-Secure | Internet Gatekeeper | 6.41 |
References
- http://www.ciac.org/ciac/bulletins/p-041.shtmlVendor Advisory
- http://www.f-secure.com/security/fsc-2004-3.shtmlPatch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/968818Third Party Advisory, US Government Resource
- http://www.ciac.org/ciac/bulletins/p-041.shtmlVendor Advisory
- http://www.f-secure.com/security/fsc-2004-3.shtmlPatch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/968818Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2004-2442?
How severe is CVE-2004-2442?
How do I fix CVE-2004-2442?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2004
- CVE-2004-2436Computer Associates Unicenter Common Services 3.0 and earlie…
- CVE-2004-2437SQL injection vulnerability in PHP-Fusion 4.01 allows remote…
- CVE-2004-2438Cross-site scripting (XSS) vulnerability in PHP-Fusion 4.01 …
- CVE-2004-2439The remote upgrade capability in HP LaserJet 4200 and 4300 p…
- CVE-2004-2440Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 …
- CVE-2004-2441Unspecified vulnerability in Kerio MailServer before 6.0.3 h…
- CVE-2004-2443Jaws 0.3 allows remote attackers to bypass authentication an…
- CVE-2004-2444Cross-site scripting (XSS) vulnerability in index.php in Jaw…
- CVE-2004-2445Directory traversal vulnerability in index.php in Jaws 0.3 B…
- CVE-2004-2446Directory traversal vulnerability in 1st Class Mail Server 4…
- CVE-2004-2447Cross-site scripting (XSS) vulnerability in 1st Class Mail S…
- CVE-2004-2448S-Mart Shopping Cart or RediCart 3.9.5b stores smart.cfg und…
Are you affected by CVE-2004-2442?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
