CVE-2012-1426
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The TAR file parser in Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, F-Prot Antivirus 4.6.2.117, K7 AntiVirus 9.77.3565, Norman Antivirus 6.06.12, and Rising Antivirus 22.83.00.03 allows remote attackers to bypass malware detection via a POSIX TAR file with an initial \42\5A\68 character sequence. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.
El analizador de archivos TAR en el Quick Heal (también conocido como Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, F-Prot Antivirus 4.6.2.117, K7 AntiVirus 9.77.3565, Norman Antivirus 6.6.12, y Rising Antivirus 22.83.00.03 permite a atacantes remotos eludir la detección de malware a través de un archivo POSIX TAR con una secuencia de caracteres inicial \42\5A\68. NOTA: esto más adelante se puede dividir en varios CVEs si la información adicional que se publica muestra que el error se produjo de forma independiente en diferentes implementaciones de analizador TAR.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-02-29 CVE Reserved
- 2012-03-19 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://osvdb.org/80406 | Vdb Entry | |
http://osvdb.org/80407 | Vdb Entry | |
http://osvdb.org/80409 | Vdb Entry | |
http://www.ieee-security.org/TC/SP2012/program.html | X_refsource_misc | |
http://www.securityfocus.com/archive/1/522005 | Mailing List | |
http://www.securityfocus.com/bid/52585 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/74241 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Authentium Search vendor "Authentium" | Command Antivirus Search vendor "Authentium" for product "Command Antivirus" | 5.2.11.5 Search vendor "Authentium" for product "Command Antivirus" and version "5.2.11.5" | - |
Affected
| ||||||
Cat Search vendor "Cat" | Quick Heal Search vendor "Cat" for product "Quick Heal" | 11.00 Search vendor "Cat" for product "Quick Heal" and version "11.00" | - |
Affected
| ||||||
F-prot Search vendor "F-prot" | F-prot Antivirus Search vendor "F-prot" for product "F-prot Antivirus" | 4.6.2.117 Search vendor "F-prot" for product "F-prot Antivirus" and version "4.6.2.117" | - |
Affected
| ||||||
K7computing Search vendor "K7computing" | Antivirus Search vendor "K7computing" for product "Antivirus" | 9.77.3565 Search vendor "K7computing" for product "Antivirus" and version "9.77.3565" | - |
Affected
| ||||||
Norman Search vendor "Norman" | Norman Antivirus \& Antispyware Search vendor "Norman" for product "Norman Antivirus \& Antispyware" | 6.06.12 Search vendor "Norman" for product "Norman Antivirus \& Antispyware" and version "6.06.12" | - |
Affected
| ||||||
Rising-global Search vendor "Rising-global" | Rising Antivirus Search vendor "Rising-global" for product "Rising Antivirus" | 22.83.00.03 Search vendor "Rising-global" for product "Rising Antivirus" and version "22.83.00.03" | - |
Affected
|