CVE-2010-1425
F-Secure Internet Security 2010 and earlier; Anti-Virus for Microsoft Exchange 9 and earlier, and for MIMEsweeper 5.61 and earlier; Internet Gatekeeper for Windows 6.61 and earlier, and for Linux 4.02 and earlier; Anti-Virus 2010 and earlier; Home…
Does this matter?
Lower severity and a low EPSS score (2.15%). Track it; it rarely justifies an emergency change on its own.
Description
F-Secure Internet Security 2010 and earlier; Anti-Virus for Microsoft Exchange 9 and earlier, and for MIMEsweeper 5.61 and earlier; Internet Gatekeeper for Windows 6.61 and earlier, and for Linux 4.02 and earlier; Anti-Virus 2010 and earlier; Home Server Security 2009; Protection Service for Consumers 9 and earlier, for Business - Workstation security 9 and earlier, for Business - Server Security 8 and earlier, and for E-mail and Server security 9 and earlier; Mac Protection build 8060 and earlier; Client Security 9 and earlier; and various Anti-Virus products for Windows, Linux, and Citrix; does not properly detect malware in crafted (1) 7Z, (2) GZIP, (3) CAB, or (4) RAR archives, which makes it easier for remote attackers to avoid detection.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 2.15% probability · 81th percentile
- CISA KEV
- Not listed
- Affected
- f-secure/anti-virus · f-secure/f-secure anti-virus · f-secure/f-secure anti-virus client security · f-secure/f-secure anti-virus for citrix servers · f-secure/f-secure anti-virus for linux · f-secure/f-secure anti-virus for microsoft exchange · f-secure/f-secure anti-virus for mimesweeper · f-secure/f-secure anti-virus for windows servers · f-secure/f-secure anti-virus for workstations · f-secure/f-secure anti-virus linux client security · f-secure/f-secure anti-virus linux server security · f-secure/f-secure internet security · f-secure/home server security · f-secure/internet gatekeeper
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/39396Vendor Advisory
- http://www.f-secure.com/en_EMEA/support/security-advisory/fsc-2010-1.htmlPatch, Vendor Advisory
- http://www.securitytracker.com/id?1023841
- http://www.securitytracker.com/id?1023842
- http://www.securitytracker.com/id?1023843
- http://www.vupen.com/english/advisories/2010/0855Patch, Vendor Advisory
- http://secunia.com/advisories/39396Vendor Advisory
- http://www.f-secure.com/en_EMEA/support/security-advisory/fsc-2010-1.htmlPatch, Vendor Advisory
- http://www.securitytracker.com/id?1023841
- http://www.securitytracker.com/id?1023842
- http://www.securitytracker.com/id?1023843
- http://www.vupen.com/english/advisories/2010/0855Patch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.