Vulnerabilities > F Prot > F Prot Antivirus > 3.14c

DATE CVE VULNERABILITY TITLE RISK
2008-07-21 CVE-2008-3244 Improper Input Validation vulnerability in F-Prot Antivirus and Scanning Engine
The scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allows remote attackers to cause a denial of service (engine crash) via a CHM file with a large nb_dir value that triggers an out-of-bounds read.
network
f-prot CWE-20
4.3
2008-07-21 CVE-2008-3243 Improper Input Validation vulnerability in F-Prot Antivirus and Scanning Engine
Multiple unspecified vulnerabilities in the scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allow remote attackers to cause a denial of service via (1) a crafted UPX-compressed file, which triggers an engine crash; (2) a crafted Microsoft Office file, which triggers an infinite loop; or (3) an ASPack-compressed file, which triggers an engine crash.
network
f-prot CWE-20
4.3
2006-12-05 CVE-2006-6293 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in F-Prot Antivirus
Heap-based buffer overflow in FRISK Software F-Prot Antivirus before 4.6.7 allows user-assisted remote attackers to execute arbitrary code via a crafted CHM file.
network
low complexity
f-prot CWE-119
7.5