First published: Fri Oct 14 2005(Updated: )
Multiple interpretation error in unspecified versions of Norman Virus Control Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Norman Antivirus & Antispyware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3220 is classified as a medium severity vulnerability due to its potential to allow remote attackers to bypass virus detection.
To mitigate CVE-2005-3220, ensure your Norman Virus Control Antivirus is updated to the latest version which addresses this vulnerability.
CVE-2005-3220 affects unspecified versions of Norman Virus Control Antivirus.
Yes, CVE-2005-3220 can be exploited remotely by attackers using specially crafted RAR files.
CVE-2005-3220 involves malicious executables packaged within specially crafted RAR files.