CVE-2008-1412

Unspecified vulnerability in multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, and others, allows remote attackers to execute arbitrary code or cause a denial of service (hang or crash) via a malformed archive that triggers an unhandled exception, as demonstrated by the PROTOS GENOME test suite for Archive Formats.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 96%
VendorProductVersion
f-securef-secure_anti-virus_client_security
𝑥
≤ 6.04
f-securef-secure_anti-virus_for_linux
𝑥
≤ 4.65
f-securef-secure_anti-virus_for_workstations
𝑥
≤ 7.11
f-securef-secure_anti-virus_linux_client_security
𝑥
≤ 5.54
f-securef-secure_client_security
𝑥
≤ 7.11
f-securef-secure_mobile_antivirus_for_windows_mobile
5.0
f-securef-secure_mobile_security_for_series_80
*
f-securef-secure_protection_service_for_business
𝑥
≤ 3.10
f-securef-secure_protection_service_for_consumers
𝑥
≤ 7.00
𝑥
= Vulnerable software versions