The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Norman Antivirus 6.06.12, eSafe 7.0.17.0, Kaspersky Anti-Virus 7.0.0.125, McAfee Gateway (formerly Webwasher) 2010.1C, Sophos Anti-Virus 4.61.0, CA eTrust Vet Antivirus 36.1.8511, Antiy Labs AVL SDK 2.0.3.7, PC Tools AntiVirus 7.0.3.5, Rising Antivirus 22.83.00.03, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified encoding field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Aladdin
Subscribe
|
Esafe
Subscribe
|
|
Antiy
Subscribe
|
Avl Sdk
Subscribe
|
|
Ca
Subscribe
|
Etrust Vet Antivirus
Subscribe
|
|
Cat
Subscribe
|
Quick Heal
Subscribe
|
|
Fortinet
Subscribe
|
Fortinet Antivirus
Subscribe
|
|
Kaspersky
Subscribe
|
Kaspersky Anti-virus
Subscribe
|
|
Mcafee
Subscribe
|
|
|
Norman
Subscribe
|
Norman Antivirus \& Antispyware
Subscribe
|
|
Pandasecurity
Subscribe
|
Panda Antivirus
Subscribe
|
|
Pc Tools
Subscribe
|
Pc Tools Antivirus
Subscribe
|
|
Rising-global
Subscribe
|
Rising Antivirus
Subscribe
|
|
Sophos
Subscribe
|
Sophos Anti-virus
Subscribe
|
|
Symantec
Subscribe
|
Endpoint Protection
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2012-1468 | The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Norman Antivirus 6.06.12, eSafe 7.0.17.0, Kaspersky Anti-Virus 7.0.0.125, McAfee Gateway (formerly Webwasher) 2010.1C, Sophos Anti-Virus 4.61.0, CA eTrust Vet Antivirus 36.1.8511, Antiy Labs AVL SDK 2.0.3.7, PC Tools AntiVirus 7.0.3.5, Rising Antivirus 22.83.00.03, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified encoding field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T19:01:00.442Z
Reserved: 2012-02-29T00:00:00.000Z
Link: CVE-2012-1446
No data.
Status : Deferred
Published: 2012-03-21T10:11:48.270
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-1446
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD