Vulnerabilities > F Prot > F Prot Antivirus > 4.6.6

DATE CVE VULNERABILITY TITLE RISK
2008-07-21 CVE-2008-3244 Improper Input Validation vulnerability in F-Prot Antivirus and Scanning Engine
The scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allows remote attackers to cause a denial of service (engine crash) via a CHM file with a large nb_dir value that triggers an out-of-bounds read.
network
f-prot CWE-20
4.3
2008-07-21 CVE-2008-3243 Improper Input Validation vulnerability in F-Prot Antivirus and Scanning Engine
Multiple unspecified vulnerabilities in the scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allow remote attackers to cause a denial of service via (1) a crafted UPX-compressed file, which triggers an engine crash; (2) a crafted Microsoft Office file, which triggers an infinite loop; or (3) an ASPack-compressed file, which triggers an engine crash.
network
f-prot CWE-20
4.3
2006-12-10 CVE-2006-6407 Unspecified vulnerability in F-Prot Antivirus 4.6.6
F-Prot Antivirus for Linux x86 Mail Servers 4.6.6 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file.
network
low complexity
f-prot
5.0