CVE-2008-6085

Integer overflow in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, when configured to scan inside compressed archives, allows remote attackers to execute arbitrary code via a crafted RPM compressed archive file, which triggers a buffer overflow.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:f-secure:f-secure_anti-virus:7.02:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2006:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2007:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2007:*:second:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2008:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus:2009:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_citrix_servers:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_microsoft_exchange:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_microsoft_exchange:6.62:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_microsoft_exchange:7.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_mimesweeper:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_windows_servers:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:7.10:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_for_workstations:7.11:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:5.30:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:5.52:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_client_security:5.53:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_server_security:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_server_security:5.30:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_anti-virus_linux_server_security:5.52:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_client_security:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_client_security:7.11:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_home_server_security:2009:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_gatekeeper_for_linux:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_gatekeeper_for_windows:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:7.02:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2006:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2007:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2007:*:second:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2008:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_internet_security:2009:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_linux_security:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_messaging_security_gateway:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_messaging_security_gateway:4.0.7:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_protection_service_for_business:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_protection_service_for_business:3.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_protection_service_for_consumers:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_protection_service_for_consumers:5.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_protection_service_for_consumers:6.00:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:f-secure_protection_service_for_consumers:7.00:*:*:*:*:*:*:*

History

No history.

Information

Published : 2009-02-06 11:30

Updated : 2024-02-28 11:21


NVD link : CVE-2008-6085

Mitre link : CVE-2008-6085

CVE.ORG link : CVE-2008-6085


JSON object : View

Products Affected

f-secure

  • f-secure_anti-virus_linux_client_security
  • f-secure_anti-virus_for_microsoft_exchange
  • f-secure_home_server_security
  • f-secure_internet_gatekeeper_for_windows
  • f-secure_anti-virus_for_mimesweeper
  • f-secure_linux_security
  • f-secure_anti-virus_for_workstations
  • f-secure_anti-virus_for_citrix_servers
  • f-secure_internet_gatekeeper_for_linux
  • f-secure_internet_security
  • f-secure_protection_service_for_business
  • f-secure_anti-virus_linux_server_security
  • f-secure_anti-virus
  • f-secure_messaging_security_gateway
  • f-secure_client_security
  • f-secure_anti-virus_for_windows_servers
  • f-secure_protection_service_for_consumers
CWE
CWE-189

Numeric Errors