Description
Multiple F-Secure anti-virus products for Microsoft Windows and Linux before 20070522 allow remote attackers to cause a denial of service (file scanning infinite loop) via certain crafted (1) ARJ archives or (2) FSG packed files.
Affected products
- F-Secure / f-secure_anti-virus4.65
- F-Secure / f-secure_anti-virus4.65
- F-Secure / f-secure_anti-virus5.42
- F-Secure / f-secure_anti-virus5.44
- F-Secure / f-secure_anti-virus5.52
- F-Secure / f-secure_anti-virus5.61
- F-Secure / f-secure_anti-virus6.40
- F-Secure / f-secure_anti-virus2005 – 2005
- F-Secure / f-secure_anti-virus2006 – 2006
- F-Secure / f-secure_anti-virus2007 – 2007
- F-Secure / f-secure_anti-virus_client_security6.03
- F-Secure / f-secure_anti-virus_linux_client_security5.30
- F-Secure / f-secure_anti-virus_linux_server_security5.30
- F-Secure / f-secure_internet_security2005 – 2005
- F-Secure / f-secure_internet_security2006 – 2006
- F-Secure / f-secure_internet_security2007 – 2007
- F-Secure / f-secure_protection_service6.40
- F-Secure / internet_gatekeeper2.16
- F-Secure / internet_gatekeeper6.60
References
- MISChttp://osvdb.org/36725
- MAILING_LISThttp://lists.grok.org.uk/pipermail/full-disclosure/2007-June/063714.html
- MISChttp://www.nruns.com/security_advisory_fsecure_arj.php
- MISChttp://www.securitytracker.com/id?1018148
- MISChttp://securitytracker.com/id?1018147
- MISChttp://www.securitytracker.com/id?1018146
- MISChttp://www.securityfocus.com/archive/1/470484/100/0/threaded
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2007/1985
- MAILING_LISThttp://lists.grok.org.uk/pipermail/full-disclosure/2007-June/063715.html
- MISChttp://www.nruns.com/security_advisory_fsecure_fsg.php
- MISChttp://osvdb.org/36726
- MISChttp://www.f-secure.com/security/fsc-2007-3.shtml
- VENDOR_ADVISORYhttp://secunia.com/advisories/25440
- MISChttp://www.securityfocus.com/archive/1/470462/100/0/threaded
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/34581