CVE-2009-1783
Summary
| CVE | CVE-2009-1783 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2009-05-22 20:30:00 UTC |
| Updated | 2018-10-10 19:38:00 UTC |
| Description | Multiple FRISK Software F-Prot anti-virus products, including Antivirus for Exchange, Linux on IBM zSeries, Linux x86 File Servers, Linux x86 Mail Servers, Linux x86 Workstations, Solaris Mail Servers, Antivirus for Windows, and others, allow remote attackers to bypass malware detection via a crafted CAB archive. |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | F-prot | F-prot Antivirus | All | exchange | All | All |
| Application | F-prot | F-prot Antivirus | All | linux_on_ibm_zseries | All | All |
| Application | F-prot | F-prot Antivirus | All | linux_x86_file_servers | All | All |
| Application | F-prot | F-prot Antivirus | All | linux_x86_mail_servers | All | All |
| Application | F-prot | F-prot Antivirus | All | linux_x86_workstations | All | All |
| Application | F-prot | F-prot Antivirus | All | solaris_mail_servers | All | All |
| Application | F-prot | F-prot Antivirus | All | windows | All | All |
| Application | F-prot | F-prot Antivirus | All | windows_mail_servers | All | All |
| Application | F-prot | F-prot Antivirus | All | exchange | All | All |
| Application | F-prot | F-prot Antivirus | All | linux_on_ibm_zseries | All | All |
| Application | F-prot | F-prot Antivirus | All | linux_x86_file_servers | All | All |
| Application | F-prot | F-prot Antivirus | All | linux_x86_mail_servers | All | All |
| Application | F-prot | F-prot Antivirus | All | linux_x86_workstations | All | All |
| Application | F-prot | F-prot Antivirus | All | solaris_mail_servers | All | All |
| Application | F-prot | F-prot Antivirus | All | windows | All | All |
| Application | F-prot | F-prot Antivirus | All | windows_mail_servers | All | All |
| Application | F-prot | F-prot Aves | All | All | All | All |
| Application | F-prot | F-prot Aves | All | All | All | All |
| Application | F-prot | F-prot Milter | All | All | All | All |
| Application | F-prot | F-prot Milter | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Secdev - Thierry Zoller: Advisory : F-Prot (Frisk) - CAB bypass / evasions | MISC | blog.zoller.lu | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| Multiple F-PROT Products CAB File Scan Evasion Vulnerability | BID | www.securityfocus.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.