
CVE-2008-3243
https://notcve.org/view.php?id=CVE-2008-3243
21 Jul 2008 — Multiple unspecified vulnerabilities in the scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allow remote attackers to cause a denial of service via (1) a crafted UPX-compressed file, which triggers an engine crash; (2) a crafted Microsoft Office file, which triggers an infinite loop; or (3) an ASPack-compressed file, which triggers an engine crash. Múltiples vulnerabilidades sin especificar en el motor de análisis anterior a 4.4.4 en el F-Prrot Antivirus anterior a 6.0.9.0, permite a atacant... • http://secunia.com/advisories/31118 • CWE-20: Improper Input Validation •

CVE-2008-3244
https://notcve.org/view.php?id=CVE-2008-3244
21 Jul 2008 — The scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allows remote attackers to cause a denial of service (engine crash) via a CHM file with a large nb_dir value that triggers an out-of-bounds read. Motor de análisis anterior a 4.4.4 en F-Prot Antivirus anterior a 6.0.9.0, permite a atacantes remotos provocar una denegación de servicio (caída de motor) a través de un fichero CHM con un valor nb_dir largo, lo que provoca una lectura fuera de rango. • http://secunia.com/advisories/31118 • CWE-20: Improper Input Validation •

CVE-2006-6407
https://notcve.org/view.php?id=CVE-2006-6407
10 Dec 2006 — F-Prot Antivirus for Linux x86 Mail Servers 4.6.6 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file. F-Prot Antivirus para Linux x86 Mail Servers 4.6.6 permite a atacantes remotos evitar una detección de virus, insertando caracteres inválidos en un contenido codificado base 64 en un fichero MIME multipart/mixed, como se demuestra con el fichero de testeo EICAR. • http://www.quantenblog.net/security/virus-scanner-bypass •

CVE-2006-6352 – F-Prot AntiVirus 4.6.6 - 'ACE' Denial of Service
https://notcve.org/view.php?id=CVE-2006-6352
07 Dec 2006 — FRISK Software F-Prot Antivirus before 4.6.7 allows user-assisted remote attackers to cause a denial of service (infinite loop) via a crafted ACE file. NOTE: this issue has at least a partial overlap with CVE-2006-6294. FRISK Software F-Prot Antivirus anterior a 4.6.7 permite a atacantes remotos con la intervención del usuario provocar una denegación de servicio (bucle infinito) mediante un fichero ACE artesanal. NOTA: este asunto está parcialmente solapado con CVE-2006-6294. • https://www.exploit-db.com/exploits/2892 •

CVE-2006-6294
https://notcve.org/view.php?id=CVE-2006-6294
05 Dec 2006 — Multiple unspecified vulnerabilities in FRISK Software F-Prot Antivirus before 4.6.7 have unspecified impact and attack vectors. NOTE: this might be related to CVE-2006-6293, but it is not clear due to the vagueness of the report. Múltiples vulnerabilidades no especificadas en FRISK Software F-Prot Antivirus anterior a 4.6.7 tienen impacto y vectores de ataque desconocidos. NOTA: esto puede estar relacionado con CVE-2006-6293, pero no esta claro debido a la vaguedad del informe. • http://secunia.com/advisories/23328 •

CVE-2006-6293 – F-Prot AntiVirus 4.6.6 - CHM Heap Overflow (PoC)
https://notcve.org/view.php?id=CVE-2006-6293
05 Dec 2006 — Heap-based buffer overflow in FRISK Software F-Prot Antivirus before 4.6.7 allows user-assisted remote attackers to execute arbitrary code via a crafted CHM file. NOTE: this issue has at least a partial overlap with CVE-2006-6294. Desbordamiento de búfer basado en montículo en FRISK Software F-Prot Antivirus 3.16f anterior al 4.6.7 permite a atacantes con la intervención del usuario ejecutar código de su elección a través de ficheros CHM manipulados. NOTA: Esta vulnerabilidad tiene, por lo menos una parte, ... • https://www.exploit-db.com/exploits/2893 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •