First published: Fri Oct 14 2005(Updated: )
Multiple interpretation error in unspecified versions of Avira Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Avira AV Pack |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3219 is considered a medium severity vulnerability due to the potential for remote code execution.
To mitigate CVE-2005-3219, users should ensure they are using the latest version of Avira Antivirus where the vulnerability is patched.
CVE-2005-3219 affects unspecified versions of Avira Antivirus, and users should check their specific version against available security advisories.
Attackers can exploit CVE-2005-3219 by crafting RAR files with malformed headers to bypass virus detection.
Opening RAR files with Avira Antivirus may pose a risk if these files are crafted maliciously and the antivirus version is vulnerable.