This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor F-Secure First view 2004-08-18
Product F-Secure Personal Express Last view 2006-01-20
Version 4.5 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:f-secure:f-secure_personal_express

Activity : Overall

Related : CVE

  Date Alert Description
5 2006-01-20 CVE-2006-0338

Multiple F-Secure Anti-Virus products and versions for Windows and Linux, including Anti-Virus for Windows Servers 5.52 and earlier, Internet Security 2004, 2005 and 2006, and Anti-Virus for Linux Servers 4.64 and earlier, allow remote attackers to hide arbitrary files and data via malformed (1) RAR and (2) ZIP archives, which are not properly scanned.

7.5 2005-05-02 CVE-2005-0350

Heap-based buffer overflow in multiple F-Secure Anti-Virus and Internet Security products allows remote attackers to execute arbitrary code via a crafted ARJ archive.

5 2004-12-31 CVE-2004-2442

Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on the target system.

6.4 2004-08-18 CVE-2004-0235

Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive containing filenames with (1) .. sequences or (2) absolute pathnames with double leading slashes ("//absolute/path").

10 2004-08-18 CVE-2004-0234

Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewall, allow remote attackers or local users to execute arbitrary code via long directory or file names in an LHA archive, which triggers the overflow when testing or extracting the archive.

CWE : Common Weakness Enumeration

%idName
100% (1) CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer

Open Source Vulnerability Database (OSVDB)

id Description
22633 F-Secure Anti-Virus Crafted ZIP/RAR Scanner Bypass
13704 F-Secure Multiple Products ARJ Archive Handling Overflow
10963 Multiple Anti-Virus Zero Compressed Size Header Detection Bypass
5755 LHA Arbitrary File Access
5753 LHA get_header() Function File / Directory Name Handling Overflow

ExploitDB Exploits

id Description
24067 LHA 1.x Buffer Overflow/Directory Traversal Vulnerabilities

OpenVAS Exploits

id Description
2008-09-24 Name : Gentoo Security Advisory GLSA 200405-02 (lha)
File : nvt/glsa_200405_02.nasl
2008-09-04 Name : FreeBSD Ports: lha
File : nvt/freebsd_lha0.nasl
2008-01-17 Name : Debian Security Advisory DSA 515-1 (lha)
File : nvt/deb_515_1.nasl
0000-00-00 Name : Slackware Advisory SSA:2004-125-01 lha update in bin package
File : nvt/esoft_slk_ssa_2004_125_01.nasl

Snort® IPS/IDS

Date Description
2014-01-10 F-Secure Anti-Virus LHA processing buffer overflow attempt
RuleID : 15966 - Type : FILE-OTHER - Revision : 9
2014-01-10 F-Secure AntiVirus library heap overflow attempt
RuleID : 15583 - Type : FILE-OTHER - Revision : 10

Nessus® Vulnerability Scanner

id Description
2009-04-23 Name: The remote FreeBSD host is missing a security-related update.
File: freebsd_pkg_a2ffb6279c5311d893660020ed76ef5a.nasl - Type: ACT_GATHER_INFO
2006-01-24 Name: An antivirus application installed on the remote host is affected by multiple...
File: fsecure_archive_overflows.nasl - Type: ACT_GATHER_INFO
2005-07-13 Name: The remote Slackware host is missing a security update.
File: Slackware_SSA_2004-125-01.nasl - Type: ACT_GATHER_INFO
2004-11-02 Name: The remote Mandrake Linux host is missing a security update.
File: mandrake_MDKSA-2004-118.nasl - Type: ACT_GATHER_INFO
2004-09-29 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-515.nasl - Type: ACT_GATHER_INFO
2004-08-30 Name: The remote Gentoo host is missing one or more security-related patches.
File: gentoo_GLSA-200405-02.nasl - Type: ACT_GATHER_INFO
2004-07-23 Name: The remote Fedora Core host is missing a security update.
File: fedora_2004-119.nasl - Type: ACT_GATHER_INFO
2004-07-06 Name: The remote Red Hat host is missing a security update.
File: redhat-RHSA-2004-178.nasl - Type: ACT_GATHER_INFO