CVE-2012-1432
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The Microsoft EXE file parser in Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an EXE file with a \57\69\6E\5A\69\70 character sequence at a certain location. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different EXE parser implementations.
El analizador sintáctico Microsoft EXE en Emsisoft Anti-Malware v5.1.0.1, eSafe v7.0.17.0, Ikarus Virus Utilities T3 Command Line Scanner v1.1.97.0, y Panda Antivirus v10.0.2.7 permite a atacantes remotos evitar la detección de malware a través de un fichero .EXE con una secuencia de caracteres \57\69\6E\5A\69\70 en cierta posición. NOTA: esto puede ser troceado después en múltiples CVEs si se publica información adicional mostrando como sucede el error en distintas implementaciones del analizador sintáctico de ficheros EXE.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-02-29 CVE Reserved
- 2012-03-19 CVE Published
- 2024-09-16 CVE Updated
- 2024-11-09 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.ieee-security.org/TC/SP2012/program.html | X_refsource_misc | |
http://www.securityfocus.com/archive/1/522005 | Mailing List |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Aladdin Search vendor "Aladdin" | Esafe Search vendor "Aladdin" for product "Esafe" | 7.0.17.0 Search vendor "Aladdin" for product "Esafe" and version "7.0.17.0" | - |
Affected
| ||||||
Emsisoft Search vendor "Emsisoft" | Anti-malware Search vendor "Emsisoft" for product "Anti-malware" | 5.1.0.1 Search vendor "Emsisoft" for product "Anti-malware" and version "5.1.0.1" | - |
Affected
| ||||||
Ikarus Search vendor "Ikarus" | Ikarus Virus Utilities T3 Command Line Scanner Search vendor "Ikarus" for product "Ikarus Virus Utilities T3 Command Line Scanner" | 1.1.97.0 Search vendor "Ikarus" for product "Ikarus Virus Utilities T3 Command Line Scanner" and version "1.1.97.0" | - |
Affected
| ||||||
Pandasecurity Search vendor "Pandasecurity" | Panda Antivirus Search vendor "Pandasecurity" for product "Panda Antivirus" | 10.0.2.7 Search vendor "Pandasecurity" for product "Panda Antivirus" and version "10.0.2.7" | - |
Affected
|