Multiple interpretation error in unspecified versions of (1) eTrust-Iris and (2) eTrust-Vet Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:01
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=112879611919750&w=2 - | |
References | () http://shadock.net/secubox/AVCraftedArchive.html - |
Information
Published : 2005-10-14 10:02
Updated : 2024-11-21 00:01
NVD link : CVE-2005-3225
Mitre link : CVE-2005-3225
CVE.ORG link : CVE-2005-3225
JSON object : View
Products Affected
broadcom
- etrust_antivirus_iris_engine
- etrust_antivirus
CWE