First published: Fri Oct 14 2005(Updated: )
Multiple interpretation error in unspecified versions of McAfee Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Anti-Malware Scan Engine | ||
McAfee Anti-Malware Scan Engine |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3215 is considered a high-severity vulnerability due to the potential for remote attackers to bypass virus detection.
To fix CVE-2005-3215, update the McAfee Antivirus Engine to the latest version provided by the vendor.
CVE-2005-3215 is associated with malicious executables contained in specially crafted RAR files.
CVE-2005-3215 affects unspecified versions of McAfee Antivirus Engine that are unable to correctly interpret certain RAR file headers.
No, other software like WinRAR and PowerZip can successfully open the crafted RAR files, highlighting the vulnerability in McAfee.