Vulnerabilities > F Prot > Medium

DATE CVE VULNERABILITY TITLE RISK
2008-12-29 CVE-2008-5747 Resource Management Errors vulnerability in F-Prot Antivirus 4.6.8
F-Prot 4.6.8 for GNU/Linux allows remote attackers to bypass anti-virus protection via a crafted ELF program with a "corrupted" header that still allows the program to be executed.
network
low complexity
f-prot CWE-399
5.0
2008-08-04 CVE-2008-3447 Resource Management Errors vulnerability in F-Prot Antivirus and Scanning Engine
The scanning engine in F-Prot Antivirus 6.2.1 4252 allows remote attackers to cause a denial of service (infinite loop) via a malformed ZIP archive, probably related to invalid offsets.
network
low complexity
f-prot CWE-399
5.0
2008-07-21 CVE-2008-3244 Improper Input Validation vulnerability in F-Prot Antivirus and Scanning Engine
The scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allows remote attackers to cause a denial of service (engine crash) via a CHM file with a large nb_dir value that triggers an out-of-bounds read.
network
f-prot CWE-20
4.3
2008-07-21 CVE-2008-3243 Improper Input Validation vulnerability in F-Prot Antivirus and Scanning Engine
Multiple unspecified vulnerabilities in the scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allow remote attackers to cause a denial of service via (1) a crafted UPX-compressed file, which triggers an engine crash; (2) a crafted Microsoft Office file, which triggers an infinite loop; or (3) an ASPack-compressed file, which triggers an engine crash.
network
f-prot CWE-20
4.3
2006-12-10 CVE-2006-6407 Unspecified vulnerability in F-Prot Antivirus 4.6.6
F-Prot Antivirus for Linux x86 Mail Servers 4.6.6 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file.
network
low complexity
f-prot
5.0