The AV engine before DAT 5600 in McAfee VirusScan, Total Protection, Internet Security, SecurityShield for Microsoft ISA Server, Security for Microsoft Sharepoint, Security for Email Servers, Email Gateway, and Active Virus Defense allows remote attackers to bypass virus detection via (1) an invalid Headflags field in a malformed RAR archive, (2) an invalid Packsize field in a malformed RAR archive, or (3) an invalid Filelength field in a malformed ZIP archive.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Mcafee
Subscribe
|
Active Virus Defense
Subscribe
Active Virusscan
Subscribe
Email Gateway
Subscribe
Internet Security Suite
Subscribe
Securityshield For Email Servers
Subscribe
Securityshield For Microsoft Isa Server
Subscribe
Securityshield For Microsoft Sharepoint
Subscribe
Total Protection
Subscribe
Total Protection For Endpoint
Subscribe
Virusscan Commandline
Subscribe
Virusscan Enterprise
Subscribe
Virusscan Plus
Subscribe
Virusscan Usb
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2009-1346 | The AV engine before DAT 5600 in McAfee VirusScan, Total Protection, Internet Security, SecurityShield for Microsoft ISA Server, Security for Microsoft Sharepoint, Security for Email Servers, Email Gateway, and Active Virus Defense allows remote attackers to bypass virus detection via (1) an invalid Headflags field in a malformed RAR archive, (2) an invalid Packsize field in a malformed RAR archive, or (3) an invalid Filelength field in a malformed ZIP archive. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T05:13:24.691Z
Reserved: 2009-04-20T00:00:00
Link: CVE-2009-1348
No data.
Status : Deferred
Published: 2009-04-30T20:30:00.467
Modified: 2025-04-09T00:30:58.490
Link: CVE-2009-1348
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD