Welcome! Register for a free account (or login) > How does it work?
|
|


Jul 24 2007, 04:18 AM
Post
#46
|
|
![]() AplusWebMaster ![]() ![]() ![]() ![]() ![]() Group: Authentic Member Posts: 4,577 Joined: 30-December 03 From: USA Member No.: 1,643 Operating System: XP/SP3 |
FYI...
> http://atlas.arbor.net/briefs/index#1027704494 Panda Antivirus EXE File Parsing Buffer Overflow Vulnerability Severity: High Severity Published: July 23, 2007 Panda AV is vulnerable to a buffer overflow when processing Windows EXE files. The error comes in an integer cast when parsing EXE header data. A malicious attacker could send the victim a malformed EXE file to be processed by Panda AV. This would then allow the attacker to run arbitrary code on the victim's computer. Updates have been made available. Analysis: This is a similar issue to the Eset NOD32 file processing issue and nearly a dozen such vulnerabilities recently. We believe that this trend will continue for some time. Source: http://secunia.com/advisories/26171/ NOD32 Antivirus Multiple File Processing Vulnerabilities Severity: High Severity Published: July 23, 2007 Eset NOD32 antivirus is vulnerable to file processing vulnerabilities that could be abused by a remote attacker to compromise a system. The AV software has problems processing CAB, ASPack, and FSG packed files. Malformed files could be sent to a victim to be processed by NOD32 and then run arbitrary code on the server. Eset has issued updated software to address this issue. Analysis: This is another AV vulnerability in handling files. We do not expect it to be the last one, in this package or any other AV package. Source: http://secunia.com/advisories/26124/ . This post has been edited by AplusWebMaster: Jul 4 2009, 08:03 AM |
|
|
|
![]() |
Jul 4 2009, 07:53 AM
Post
#47
|
|
![]() AplusWebMaster ![]() ![]() ![]() ![]() ![]() Group: Authentic Member Posts: 4,577 Joined: 30-December 03 From: USA Member No.: 1,643 Operating System: XP/SP3 |
FYI...
McAfee false-positive glitch... - http://www.theregister.co.uk/2009/07/03/mc...ositive_glitch/ 3 July 2009 22:48 GMT - "IT admins across the globe are letting out a collective groan after servers and PCs running McAfee VirusScan were brought down when the anti-virus program attack their core system files. In some cases, this caused the machines to display the dreaded BSOD. Details are still coming in, but forums here* and here** show that it's affecting McAfee customers in Germany, Italy, and elsewhere... Based on anecdotes, the glitch appears to be caused when older VirusScan engines install DAT 5664..." * http://forums.mcafeehelp.com/showthread.php?p=569669 ** http://forums.mcafeehelp.com/showthread.php?t=231904 - http://www.eweek.com/index2.php?option=con...0&hide_js=1 2009-07-06 - "... On July 3, McAfee users running old versions of the VirusScan engine found themselves facing false positives after downloading a DAT file that labeled legitimate programs as malware. According to McAfee support forums, the glitch led to authorized programs being quarantined, and in some cases brought about the infamous "blue screen of death"... A McAfee spokesperson said the incorrect identification was resolved in the daily release, and stressed that customers running the most current software were not affected... According to McAfee, customers running Version 5200 or newer were not impacted by the problem. The most current versions are VirusScan Enterprise 8.7 and scanning engine 5301... " This post has been edited by AplusWebMaster: Jul 7 2009, 08:27 AM
Reason for edit: Added Eweek link...
|
|
|
|
AplusWebMaster Multiple AV vendor vulns / updates / issues Jul 24 2007, 04:18 AM
AplusWebMaster FYI...
AVG 8.5 vuln - updates available
- http://... May 26 2009, 11:55 AM
AplusWebMaster FYI...
McAfee false positive...
- http://www.ther... Jun 10 2009, 05:33 AM
AplusWebMaster FYI...
F-secure - Mail relay vuln - update availa... Jun 16 2009, 05:54 AM
AplusWebMaster FYI...
ClamAV CAB/RAR/ZIP vuln - update available... Jun 19 2009, 04:59 AM
AplusWebMaster FYI...
CA - false positive
- http://www.theregist... Jul 10 2009, 06:33 AM
AplusWebMaster FYI...
Kaspersky Anti-Virus / Kaspersky Internet ... Jul 24 2009, 08:56 AM
AplusWebMaster FYI...
Sophos SAVScan vuln - updates available
- ... Aug 12 2009, 05:33 AM
AplusWebMaster FYI...
CA false positives...
- http://www.dynamoo... Aug 12 2009, 07:51 PM
AplusWebMaster FYI...
Symantec SYM09-010 - Symantec Products Key... Aug 26 2009, 04:21 AM
AplusWebMaster FYI...
avast! vuln - update available
- http:... Sep 25 2009, 08:30 AM
AplusWebMaster FYI...
CA Anti-Virus Engine - CA20091008-01
- htt... Oct 21 2009, 01:37 PM
AplusWebMaster FYI...
F-Secure PDF handling vuln - update availa... Oct 29 2009, 08:05 AM
AplusWebMaster FYI...
Panda vuln - update available
- http://sec... Nov 13 2009, 12:23 PM
AplusWebMaster FYI...
Kaspersky AV vuln - update available
- htt... Nov 18 2009, 08:08 AM
AplusWebMaster FYI...
ClamAV v0.95.3 released
- http://www.clama... Nov 19 2009, 02:10 PM
AplusWebMaster FYI...
Avast false positives - fix released
- htt... Dec 3 2009, 07:15 AM
AplusWebMaster FYI...
Kaspersky - Insecure default directory per... Dec 17 2009, 05:57 AM
AplusWebMaster FYI...
AV-Comparatives rates Anti-Malware perform... Dec 23 2009, 08:11 PM
AplusWebMaster FYI...
Symantec ...having 2010 date problems
- ht... Jan 4 2010, 02:58 PM
AplusWebMaster FYI...
F-secure - false alarm in show_ads.js
- ht... Jan 25 2010, 05:43 PM
AplusWebMaster FYI...
Kaspersky - false positive
- http://www.th... Jan 26 2010, 08:31 AM
AplusWebMaster FYI...
Symantec false positives...
- http://isc.s... Jan 28 2010, 04:49 PM
AplusWebMaster FYI...
avast! vuln - updates available
- http... Feb 23 2010, 02:06 PM
AplusWebMaster FYI...
CA Service Desk Tomcat CSS vuln - workarou... Feb 24 2010, 04:09 PM
AplusWebMaster FYI...
BitDefender 2010 - false positive on X64 s... Mar 20 2010, 11:25 PM![]() ![]() |
Similar Topics
| Topic Title | Replies | Topic Starter | Views | Last Action | |||
|---|---|---|---|---|---|---|---|
![]() |
4 | MT11 | 69 | Today, 02:46 AM Last post by: inzanity |
|||
![]() |
3 | ErinMatthews | 51 | Yesterday, 08:49 AM Last post by: paws |
|||
![]() |
36 | AplusWebMaster | 4,662 | 20th March 2010 - 05:42 AM Last post by: AplusWebMaster |
|||
![]() |
28 | devinias | 33,978 | 19th March 2010 - 08:52 AM Last post by: jerry cramer |
|||
|
Time is now: 22nd March 2010 - 07:08 AM |