CVE-2005-3546: High severity F-Secure F-Secure anti-virus vulnerability
suid.cgi scripts in F-Secure (1) Internet Gatekeeper for Linux before 2.15.484 and (2) Anti-Virus Linux Gateway before 2.16 are installed SUID with world-executable permissions, which allows local users to gain privilege.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-3546?
CVE-2005-3546 is considered a moderate severity vulnerability due to its potential to allow local users to gain elevated privileges.
How do I fix CVE-2005-3546?
To fix CVE-2005-3546, update the F-Secure Internet Gatekeeper or Anti-Virus Linux Gateway to a version that does not install suid.cgi scripts with world-executable permissions.
Who is affected by CVE-2005-3546?
CVE-2005-3546 affects users running F-Secure Internet Gatekeeper for Linux versions prior to 2.15.484 and F-Secure Anti-Virus Linux Gateway versions prior to 2.16.
What are the consequences of CVE-2005-3546?
The consequences of CVE-2005-3546 include the risk of local users executing scripts with elevated privileges, potentially compromising system integrity.
Is there a patch available for CVE-2005-3546?
Yes, patches have been provided in the updated versions of the F-Secure products that address the vulnerability in CVE-2005-3546.