// For flags

CVE-2012-1463

 

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The ELF file parser in AhnLab V3 Internet Security 2011.01.18.00, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, F-Secure Anti-Virus 9.0.16160.0, McAfee Anti-Virus Scanning Engine 5.400.0.1158, Norman Antivirus 6.06.12, nProtect Anti-Virus 2011-01-17.01, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified endianness field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations.

El analizador de archivos ELF en AhnLab V3 Internet Security v2011.01.18.00, BitDefender v7.2, Quick Heal (también conocido como Cat QuickHeal) v11.00, Command Antivirus v5.2.11.5, Comodo Antivirus v7424, eSafe v7.0.17.0, F-Prot Antivirus v4.6.2.117, F-Secure Anti-Virus v9.0.16160.0, McAfee Anti-Virus Scanning Engine v5.400.0.1158, Norman Antivirus v6.6.12, nProtect anti-Virus v2011-01-17.01, y Panda Antivirus v10.0.2.7 permite a atacantes remotos evitar la detección de malware a través de un archivo ELF con un campo endianness modificado. NOTA: esto más tarde se puede dividir en varios CVEs si la información adicional que se publica muestra que el error se produjo de forma independiente en diferentes implementaciones del analizador ELF.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2012-02-29 CVE Reserved
  • 2012-03-21 CVE Published
  • 2024-08-06 CVE Updated
  • 2024-09-19 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-264: Permissions, Privileges, and Access Controls
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Ahnlab
Search vendor "Ahnlab"
V3 Internet Security
Search vendor "Ahnlab" for product "V3 Internet Security"
2011.01.18.00
Search vendor "Ahnlab" for product "V3 Internet Security" and version "2011.01.18.00"
-
Affected
Aladdin
Search vendor "Aladdin"
Esafe
Search vendor "Aladdin" for product "Esafe"
7.0.17.0
Search vendor "Aladdin" for product "Esafe" and version "7.0.17.0"
-
Affected
Authentium
Search vendor "Authentium"
Command Antivirus
Search vendor "Authentium" for product "Command Antivirus"
5.2.11.5
Search vendor "Authentium" for product "Command Antivirus" and version "5.2.11.5"
-
Affected
Bitdefender
Search vendor "Bitdefender"
Bitdefender
Search vendor "Bitdefender" for product "Bitdefender"
7.2
Search vendor "Bitdefender" for product "Bitdefender" and version "7.2"
-
Affected
Cat
Search vendor "Cat"
Quick Heal
Search vendor "Cat" for product "Quick Heal"
11.00
Search vendor "Cat" for product "Quick Heal" and version "11.00"
-
Affected
Comodo
Search vendor "Comodo"
Comodo Antivirus
Search vendor "Comodo" for product "Comodo Antivirus"
7424
Search vendor "Comodo" for product "Comodo Antivirus" and version "7424"
-
Affected
F-prot
Search vendor "F-prot"
F-prot Antivirus
Search vendor "F-prot" for product "F-prot Antivirus"
4.6.2.117
Search vendor "F-prot" for product "F-prot Antivirus" and version "4.6.2.117"
-
Affected
F-secure
Search vendor "F-secure"
F-secure Anti-virus
Search vendor "F-secure" for product "F-secure Anti-virus"
9.0.16160.0
Search vendor "F-secure" for product "F-secure Anti-virus" and version "9.0.16160.0"
-
Affected
Mcafee
Search vendor "Mcafee"
Scan Engine
Search vendor "Mcafee" for product "Scan Engine"
5.400.0.1158
Search vendor "Mcafee" for product "Scan Engine" and version "5.400.0.1158"
-
Affected
Norman
Search vendor "Norman"
Norman Antivirus \& Antispyware
Search vendor "Norman" for product "Norman Antivirus \& Antispyware"
6.06.12
Search vendor "Norman" for product "Norman Antivirus \& Antispyware" and version "6.06.12"
-
Affected
Nprotect
Search vendor "Nprotect"
Nprotect Antivirus
Search vendor "Nprotect" for product "Nprotect Antivirus"
2011-01-17.01
Search vendor "Nprotect" for product "Nprotect Antivirus" and version "2011-01-17.01"
-
Affected
Pandasecurity
Search vendor "Pandasecurity"
Panda Antivirus
Search vendor "Pandasecurity" for product "Panda Antivirus"
10.0.2.7
Search vendor "Pandasecurity" for product "Panda Antivirus" and version "10.0.2.7"
-
Affected