SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2008-6085

Integer overflow in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, when configured to scan inside compressed archives, allows remote attackers to execute arbitrary code via…

HIGH 7.6EPSS 5.54%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (5.54%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

Integer overflow in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, when configured to scan inside compressed archives, allows remote attackers to execute arbitrary code via a crafted RPM compressed archive file, which triggers a buffer overflow.

CVSS 2.0
7.6 HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
EPSS
5.54% probability · 92th percentile
CISA KEV
Not listed
Weakness
CWE-189
Affected
f-secure/f-secure anti-virus · f-secure/f-secure anti-virus for citrix servers · f-secure/f-secure anti-virus for microsoft exchange · f-secure/f-secure anti-virus for mimesweeper · f-secure/f-secure anti-virus for windows servers · f-secure/f-secure anti-virus for workstations · f-secure/f-secure anti-virus linux client security · f-secure/f-secure anti-virus linux server security · f-secure/f-secure client security · f-secure/f-secure home server security · f-secure/f-secure internet gatekeeper for linux · f-secure/f-secure internet gatekeeper for windows · f-secure/f-secure internet security · f-secure/f-secure linux security · f-secure/f-secure messaging security gateway · f-secure/f-secure protection service for business · f-secure/f-secure protection service for consumers
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.