CVE-2005-3217: Medium severity Symantec AntiVirus Scan Engine vulnerability
Multiple interpretation error in unspecified versions of Symantec Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-3217?
CVE-2005-3217 is considered a moderate severity vulnerability due to its ability to bypass virus detection in Symantec Antivirus.
How do I fix CVE-2005-3217?
To fix CVE-2005-3217, users should update Symantec Antivirus to the latest version that addresses this vulnerability.
What products are affected by CVE-2005-3217?
CVE-2005-3217 affects multiple unspecified versions of Symantec Antivirus, particularly the Antivirus Scan Engine.
Can CVE-2005-3217 be exploited remotely?
Yes, CVE-2005-3217 can be exploited remotely by attackers using specially crafted RAR files.
How does CVE-2005-3217 impact users?
CVE-2005-3217 allows remote attackers to bypass virus detection, potentially leading to malware infections on user systems.