First published: Sun Dec 10 2006(Updated: )
F-Secure Anti-Virus for Linux Gateways 4.65 allows remote attackers to cause a denial of service (possibly fatal scan error), and possibly bypass virus detection, by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
F-secure F-secure Anti-virus | =4.65 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-6409 is classified as a high severity vulnerability due to its potential to cause denial of service and bypass virus detection.
To mitigate CVE-2006-6409, upgrade to the latest version of F-Secure Anti-Virus for Linux Gateways that addresses this vulnerability.
CVE-2006-6409 can lead to service disruption and possibly allow threats to be undetected on affected systems.
Yes, CVE-2006-6409 specifically affects F-Secure Anti-Virus for Linux Gateways version 4.65.
Yes, CVE-2006-6409 can be exploited remotely by attackers through manipulation of multipart/mixed MIME files.