First published: Fri Oct 14 2005(Updated: )
Multiple interpretation error in unspecified versions of Kaspersky Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Kaspersky Anti-Virus |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3210 has a moderate severity as it allows remote attackers to bypass virus detection.
To mitigate CVE-2005-3210, ensure that you are using an up-to-date version of Kaspersky Antivirus that addresses this vulnerability.
CVE-2005-3210 specifically affects malicious executables within specially crafted RAR files.
CVE-2005-3210 affects unspecified versions of Kaspersky Antivirus, particularly those prior to updates that patched the vulnerability.
Yes, the malicious RAR file can be opened by other programs such as Winrar and PowerZip, bypassing Kaspersky Antivirus detection.