CVE-2006-0338
Last modified
CVE-2006-0338 is a vulnerability of currently unknown severity. Multiple F-Secure Anti-Virus products and versions for Windows and Linux, including Anti-Virus for Windows Servers 5.52 and earlier, Internet Security 2004, 2005 and 2006, and Anti-Virus for Linux Servers 4.64 and earlier, allow remote attackers to hide arbitrary files and data via malformed (1) RAR and (2) ZIP archives, which are not properly scanned.. EPSS estimates a 2.99% chance of exploitation in the next 30 days.
Description
Multiple F-Secure Anti-Virus products and versions for Windows and Linux, including Anti-Virus for Windows Servers 5.52 and earlier, Internet Security 2004, 2005 and 2006, and Anti-Virus for Linux Servers 4.64 and earlier, allow remote attackers to hide arbitrary files and data via malformed (1) RAR and (2) ZIP archives, which are not properly scanned.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| F-Secure | F-Secure Anti-Virus | 4.51 |
| F-Secure | F-Secure Anti-Virus | 4.52 |
| F-Secure | F-Secure Anti-Virus | 4.60 |
| F-Secure | F-Secure Anti-Virus | 4.61 |
| F-Secure | F-Secure Anti-Virus | 4.62 |
| F-Secure | F-Secure Anti-Virus | 4.64 |
| F-Secure | F-Secure Anti-Virus | 5.0 |
| F-Secure | F-Secure Anti-Virus | 5.5 |
| F-Secure | F-Secure Anti-Virus | 5.11 |
| F-Secure | F-Secure Anti-Virus | 5.41 |
| F-Secure | F-Secure Anti-Virus | 5.42 |
| F-Secure | F-Secure Anti-Virus | 5.43 |
| F-Secure | F-Secure Anti-Virus | 5.44 |
| F-Secure | F-Secure Anti-Virus | 5.52 |
| F-Secure | F-Secure Anti-Virus | 5.55 |
| F-Secure | F-Secure Anti-Virus | 6.01 |
| F-Secure | F-Secure Anti-Virus | 6.2 |
| F-Secure | F-Secure Anti-Virus | 6.21 |
| F-Secure | F-Secure Anti-Virus | 6.30 |
| F-Secure | F-Secure Anti-Virus | 6.30_sr1 |
| F-Secure | F-Secure Anti-Virus | 6.31 |
| F-Secure | F-Secure Anti-Virus | 6.40 |
| F-Secure | F-Secure Anti-Virus | 2003 |
| F-Secure | F-Secure Anti-Virus | 2004 |
| F-Secure | F-Secure Anti-Virus | 2005 |
| F-Secure | F-Secure Internet Security | 2004 |
| F-Secure | F-Secure Internet Security | 2005 |
| F-Secure | F-Secure Internet Security | 2006 |
| F-Secure | F-Secure Personal Express | 4.5 |
| F-Secure | F-Secure Personal Express | 4.6 |
| F-Secure | F-Secure Personal Express | 4.7 |
| F-Secure | F-Secure Personal Express | 5.0 |
| F-Secure | Internet Gatekeeper | 2.06 |
| F-Secure | Internet Gatekeeper | 2.14 |
| F-Secure | Internet Gatekeeper | 6.32 |
| F-Secure | Internet Gatekeeper | 6.41 |
| F-Secure | Internet Gatekeeper | 6.42 |
References
- http://secunia.com/advisories/18529Patch, Vendor Advisory
- http://secunia.com/advisories/18529Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-0338?
How severe is CVE-2006-0338?
How do I fix CVE-2006-0338?
Are you affected by CVE-2006-0338?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
