CVE-2004-1096
Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 18.8%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 18.81% probability · 97th percentile
- CISA KEV
- Not listed
- Affected
- broadcom/brightstor arcserve backup · broadcom/etrust antivirus · broadcom/etrust antivirus gateway · broadcom/etrust ez antivirus · broadcom/etrust ez armor · broadcom/etrust intrusion detection · broadcom/etrust secure content manager · broadcom/inoculateit · ca/etrust antivirus · ca/etrust secure content manager · eset software/nod32 antivirus · kaspersky lab/kaspersky anti-virus · mcafee/antivirus engine · rav antivirus/rav antivirus desktop · rav antivirus/rav antivirus for file servers · rav antivirus/rav antivirus for mail servers · sophos/sophos anti-virus · sophos/sophos puremessage anti-virus · sophos/sophos small business suite · gentoo/linux · +2 more
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/13038/
- http://www.gentoo.org/security/en/glsa/glsa-200410-31.xmlPatch, Vendor Advisory
- http://www.idefense.com/application/poi/display?id=153&type=vulnerabilities&flashstatus=trueVendor Advisory
- http://www.kb.cert.org/vuls/id/492545US Government Resource
- http://www.mandriva.com/security/advisories?name=MDKSA-2004:118
- http://www.securityfocus.com/bid/11448Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17761
- http://secunia.com/advisories/13038/
- http://www.gentoo.org/security/en/glsa/glsa-200410-31.xmlPatch, Vendor Advisory
- http://www.idefense.com/application/poi/display?id=153&type=vulnerabilities&flashstatus=trueVendor Advisory
- http://www.kb.cert.org/vuls/id/492545US Government Resource
- http://www.mandriva.com/security/advisories?name=MDKSA-2004:118
- http://www.securityfocus.com/bid/11448Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17761
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.