// For flags

CVE-2008-3447

F-PROT AntiVirus 6.2.1.4252 - Malformed Archive Infinite Loop Denial of Service

Severity Score

5.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The scanning engine in F-Prot Antivirus 6.2.1 4252 allows remote attackers to cause a denial of service (infinite loop) via a malformed ZIP archive, probably related to invalid offsets.

El motor de exploración de F-Prot Antivirus 6.2.1 4252 permite a atacantes remotos provocar una denegación de servicio (bucle infinito) a través de archivos ZIP malformados, posiblemente relacionado con offsets inválidos.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-08-04 CVE Reserved
  • 2008-08-04 CVE Published
  • 2024-03-20 EPSS Updated
  • 2024-08-07 CVE Updated
  • 2024-08-07 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-399: Resource Management Errors
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
F-prot
Search vendor "F-prot"
F-prot Antivirus
Search vendor "F-prot" for product "F-prot Antivirus"
6.2.1.4252
Search vendor "F-prot" for product "F-prot Antivirus" and version "6.2.1.4252"
-
Affected
F-prot
Search vendor "F-prot"
Scanning Engine
Search vendor "F-prot" for product "Scanning Engine"
4.4.4.56
Search vendor "F-prot" for product "Scanning Engine" and version "4.4.4.56"
-
Affected