Vulnerabilities > CVE-2008-3447 - Resource Management Errors vulnerability in F-Prot Antivirus and Scanning Engine
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
The scanning engine in F-Prot Antivirus 6.2.1 4252 allows remote attackers to cause a denial of service (infinite loop) via a malformed ZIP archive, probably related to invalid offsets.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Common Weakness Enumeration (CWE)
Exploit-Db
description | F-PROT antivirus 6.2.1.4252 (malformed archive) Infinite Loop DoS Exploit. CVE-2008-3447. Dos exploits for multiple platform |
file | exploits/multiple/dos/6174.txt |
id | EDB-ID:6174 |
last seen | 2016-01-31 |
modified | 2008-07-31 |
platform | multiple |
port | |
published | 2008-07-31 |
reporter | kokanin |
source | https://www.exploit-db.com/download/6174/ |
title | F-PROT antivirus 6.2.1.4252 - malformed archive Infinite Loop DoS Exploit |
type | dos |
References
- http://seclists.org/fulldisclosure/2008/Jul/0569.html
- http://secunia.com/advisories/31313
- http://www.securityfocus.com/bid/30461
- http://www.securitytracker.com/id?1020612
- http://www.vupen.com/english/advisories/2008/2283
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44134
- https://www.exploit-db.com/exploits/6174