The Microsoft CHM file parser in ClamAV 0.96.4 and Sophos Anti-Virus 4.61.0 allows remote attackers to bypass malware detection via a crafted reset interval in the LZXC header of a CHM file. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different CHM parser implementations.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2012-03-21T10:00:00
Updated: 2024-08-06T19:01:00.335Z
Reserved: 2012-02-29T00:00:00
Link: CVE-2012-1458
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-03-21T10:11:49.317
Modified: 2018-01-18T02:29:13.177
Link: CVE-2012-1458
Redhat
No data.