First published: Fri Oct 14 2005(Updated: )
Multiple interpretation error in unspecified versions of Dr.Web Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dr.Web Antivirus |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3218 is classified as a medium severity vulnerability due to its potential to allow remote attackers to bypass virus detection.
To fix CVE-2005-3218, users should update to the latest version of Dr.Web Antivirus that addresses this vulnerability.
The vulnerability CVE-2005-3218 affects unspecified versions of Dr.Web Antivirus.
Yes, attackers can exploit CVE-2005-3218 by using malicious executables packaged in specially crafted RAR files.
CVE-2005-3218 involves RAR files that have malformed central and local headers, which can bypass virus detection.