CVE-2012-1448
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The CAB file parser in Quick Heal (aka Cat QuickHeal) 11.00, Trend Micro AntiVirus 9.120.0.1004, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Trend Micro HouseCall 9.120.0.1004, and Emsisoft Anti-Malware 5.1.0.1 allows remote attackers to bypass malware detection via a CAB file with a modified cbCabinet field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different CAB parser implementations.
El analizador de archivos CAB en Quick Heal (también conocido como Cat QuickHeal) 11.00, Trend Micro AntiVirus 9.120.0.1004, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Trend Micro HouseCall 9.120.0.1004, y Emsisoft Anti-Malware 5.1.0.1 permite a atacantes remotos para eludir la detección de malware a través de un archivo CAB con un campo cbCabinet modificado. NOTA: esto más adelante se puede dividir en varios CVEs si la información adicional que se publica muestra que el error se produjo de forma independiente en diferentes implementaciones del analizador CAB.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-02-29 CVE Reserved
- 2012-03-21 CVE Published
- 2024-08-06 CVE Updated
- 2024-11-09 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.ieee-security.org/TC/SP2012/program.html | X_refsource_misc | |
http://www.securityfocus.com/archive/1/522005 | Mailing List | |
http://www.securityfocus.com/bid/52603 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cat Search vendor "Cat" | Quick Heal Search vendor "Cat" for product "Quick Heal" | 11.00 Search vendor "Cat" for product "Quick Heal" and version "11.00" | - |
Affected
| ||||||
Emsisoft Search vendor "Emsisoft" | Anti-malware Search vendor "Emsisoft" for product "Anti-malware" | 5.1.0.1 Search vendor "Emsisoft" for product "Anti-malware" and version "5.1.0.1" | - |
Affected
| ||||||
Ikarus Search vendor "Ikarus" | Ikarus Virus Utilities T3 Command Line Scanner Search vendor "Ikarus" for product "Ikarus Virus Utilities T3 Command Line Scanner" | 1.1.97.0 Search vendor "Ikarus" for product "Ikarus Virus Utilities T3 Command Line Scanner" and version "1.1.97.0" | - |
Affected
| ||||||
Trendmicro Search vendor "Trendmicro" | Housecall Search vendor "Trendmicro" for product "Housecall" | 9.120.0.1004 Search vendor "Trendmicro" for product "Housecall" and version "9.120.0.1004" | - |
Affected
| ||||||
Trendmicro Search vendor "Trendmicro" | Trend Micro Antivirus Search vendor "Trendmicro" for product "Trend Micro Antivirus" | 9.120.0.1004 Search vendor "Trendmicro" for product "Trend Micro Antivirus" and version "9.120.0.1004" | - |
Affected
|